Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-13 18:59:13.923 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-12-13 19:00:14.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38072 10 6452 1 2025-12-13 18:57:15.568 00:05:02.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 18:57:15.565 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:01:14.716 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58802 10 6452 1 2025-12-13 19:01:30.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:01:30.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:01:30.801 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:01:30.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:01:30.883 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:02:15.149 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49332 10 6452 1 2025-12-13 19:03:15.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47706 10 6452 1 2025-12-13 19:04:15.920 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-12-13 19:05:16.303 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-12-13 19:06:16.673 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-12-13 19:06:30.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:06:30.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:06:30.954 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:06:30.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:06:31.036 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:03:15.569 00:05:02.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:03:15.566 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:07:17.102 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34820 10 6452 1 2025-12-13 19:08:17.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52044 10 6452 1 2025-12-13 19:09:17.909 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51312 12 6556 1 2025-12-13 19:10:18.322 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37080 10 6452 1 2025-12-13 19:11:18.724 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-12-13 19:11:31.038 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:11:30.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:11:30.883 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:11:30.777 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:11:30.955 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:12:19.132 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-12-13 19:09:15.570 00:05:02.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:09:15.567 00:05:02.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:13:19.496 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59804 10 6452 1 2025-12-13 19:14:19.897 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:37442 12 10375 1 2025-12-13 19:15:20.381 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49654 10 6452 1 2025-12-13 19:16:30.925 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:16:31.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:16:30.942 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:16:30.915 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:16:20.781 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55506 10 6452 1 2025-12-13 19:16:30.998 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:17:21.190 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-12-13 19:18:21.592 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43768 10 6452 1 2025-12-13 19:15:15.571 00:05:02.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:15:15.569 00:05:02.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:19:21.997 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6452 1 2025-12-13 19:20:22.359 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-12-13 19:21:31.130 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:21:31.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:21:22.718 00:00:10.555 TCP 1.101.0.1:3000 -> 23.104.0.1:36706 10 6452 1 2025-12-13 19:21:30.987 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:21:31.246 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:21:31.069 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:22:23.312 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-12-13 19:23:23.675 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46416 10 6452 1 2025-12-13 19:24:24.109 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38930 10 6452 1 2025-12-13 19:21:15.575 00:05:02.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:21:15.571 00:05:02.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:25:24.475 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:55192 10 6452 1 2025-12-13 19:26:31.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:26:31.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:26:31.238 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:26:31.327 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:26:31.409 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:26:24.943 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6452 1 2025-12-13 19:27:25.357 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-12-13 19:28:25.756 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 11 6504 1 2025-12-13 19:29:26.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6452 1 2025-12-13 19:30:26.597 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-12-13 19:27:15.573 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:27:15.576 00:05:02.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:31:31.329 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:31:31.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:31:31.265 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:31:31.339 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:31:31.423 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:31:27.010 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6452 1 2025-12-13 19:32:27.371 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54316 10 6452 1 2025-12-13 19:33:27.779 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-12-13 19:34:28.193 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:53412 10 6452 1 2025-12-13 19:35:28.583 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33656 10 6452 1 2025-12-13 19:36:31.721 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:36:31.759 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:36:31.399 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:36:31.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:36:31.945 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:36:28.949 00:00:10.565 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-12-13 19:33:15.579 00:05:02.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:33:15.576 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:37:29.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40344 10 6452 1 2025-12-13 19:38:29.957 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-12-13 19:39:30.324 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37072 10 6452 1 2025-12-13 19:40:30.701 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-12-13 19:41:31.589 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:41:31.515 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:41:31.326 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:41:31.517 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:41:31.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:41:31.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44998 10 6452 1 2025-12-13 19:42:31.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-12-13 19:39:15.578 00:05:02.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:39:15.581 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:43:31.920 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35394 10 6452 1 2025-12-13 19:44:32.325 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-12-13 19:45:32.693 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35076 10 6452 1 2025-12-13 19:46:31.720 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:46:31.604 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:46:31.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:46:31.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:46:31.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:46:33.054 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-12-13 19:47:33.470 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47486 10 6452 1 2025-12-13 19:48:33.874 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41784 10 6452 1 2025-12-13 19:45:15.579 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:45:15.582 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:49:34.239 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42324 10 6452 1 2025-12-13 19:50:34.638 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44494 10 6452 1 2025-12-13 19:51:31.827 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:51:31.956 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:51:31.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:51:31.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:51:31.911 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:51:35.040 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52064 10 6452 1 2025-12-13 19:52:35.450 00:00:11.095 TCP 1.101.0.1:3000 -> 23.104.0.1:43658 10 6452 1 2025-12-13 19:53:36.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43916 10 6452 1 2025-12-13 19:54:36.986 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58732 10 6452 1 2025-12-13 19:51:15.583 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:51:15.580 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:55:37.354 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6452 1 2025-12-13 19:56:31.882 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:56:32.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:56:32.174 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:56:31.801 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:56:32.086 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:56:37.755 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52122 10 6452 1 2025-12-13 19:57:38.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-12-13 19:58:38.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44262 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 912, avg pps: 0, avg bpp: 410 Time window: 2025-12-13 18:57:15 - 2025-12-13 19:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0059s User: 0.0008s Wall: 0.0030s flows/second: 46419.2 Runtime: 0.0030s