Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-13 20:59:04.100 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38228 10 6452 1 2025-12-13 21:00:04.497 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41204 10 6452 1 2025-12-13 20:57:15.603 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 20:57:15.605 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:01:04.860 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58768 10 6452 1 2025-12-13 21:01:33.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:01:33.001 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:01:33.142 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:01:33.095 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:01:33.207 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:02:05.236 00:00:12.008 TCP 1.101.0.1:3000 -> 23.104.0.1:56916 10 6452 1 2025-12-13 21:03:07.284 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-12-13 21:04:07.687 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58282 10 6452 1 2025-12-13 21:05:08.052 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53830 10 6452 1 2025-12-13 21:06:08.422 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-12-13 21:06:33.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:06:33.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:06:33.235 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:06:33.277 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:06:33.309 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:03:15.606 00:05:02.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:03:15.607 00:05:02.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:07:08.867 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-12-13 21:08:09.286 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43602 10 6452 1 2025-12-13 21:09:09.692 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 10 6452 1 2025-12-13 21:10:10.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41030 10 6452 1 2025-12-13 21:11:10.518 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-12-13 21:11:33.459 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:11:33.509 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:11:33.285 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:11:33.346 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:11:33.429 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:12:10.923 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36580 10 6452 1 2025-12-13 21:09:15.610 00:05:02.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:09:15.613 00:05:02.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:13:11.333 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-12-13 21:14:11.730 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45338 10 6452 1 2025-12-13 21:15:12.138 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-12-13 21:16:12.505 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6452 1 2025-12-13 21:16:33.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:16:33.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:16:33.216 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:16:33.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:16:33.655 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:17:12.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-12-13 21:18:13.317 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50584 10 6452 1 2025-12-13 21:15:15.614 00:05:02.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:15:15.616 00:05:02.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:19:13.727 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44690 10 6452 1 2025-12-13 21:20:14.141 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35152 10 6452 1 2025-12-13 21:21:14.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51958 10 6452 1 2025-12-13 21:21:33.533 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:21:33.540 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:21:33.653 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:21:33.671 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:21:33.451 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:22:14.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-12-13 21:23:15.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41998 10 6452 1 2025-12-13 21:24:15.762 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:48710 10 6452 1 2025-12-13 21:21:15.615 00:05:02.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:21:15.619 00:05:02.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:25:16.139 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 10 6452 1 2025-12-13 21:26:33.956 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:26:16.502 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46886 10 6452 1 2025-12-13 21:26:33.873 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:26:33.872 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:26:33.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:26:33.874 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:27:16.906 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48158 10 6452 1 2025-12-13 21:28:17.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36228 10 6452 1 2025-12-13 21:29:17.683 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44946 10 6452 1 2025-12-13 21:30:18.110 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-12-13 21:27:15.617 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:27:15.619 00:05:02.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:31:18.518 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32944 10 6452 1 2025-12-13 21:31:34.024 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:31:33.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:31:33.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:31:33.675 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:31:33.940 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:32:18.920 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43726 10 6452 1 2025-12-13 21:33:19.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-12-13 21:34:19.715 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51644 10 6452 1 2025-12-13 21:35:20.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58342 10 6452 1 2025-12-13 21:36:33.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:36:33.918 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:36:33.865 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:36:33.767 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:36:20.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-12-13 21:36:33.801 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:33:15.616 00:05:02.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:33:15.619 00:05:02.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:37:20.878 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59966 10 6452 1 2025-12-13 21:38:21.295 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44148 10 6452 1 2025-12-13 21:39:21.697 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 2025-12-13 21:40:22.112 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48046 10 6452 1 2025-12-13 21:41:34.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:41:33.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:41:34.045 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:41:34.134 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:41:34.121 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:41:22.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38554 10 6452 1 2025-12-13 21:42:22.926 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-12-13 21:39:15.619 00:05:02.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:39:15.621 00:05:02.410 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:43:23.340 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45296 10 6452 1 2025-12-13 21:44:23.698 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45742 10 6452 1 2025-12-13 21:45:24.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45524 10 6452 1 2025-12-13 21:46:34.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:46:34.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:46:24.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47748 10 6452 1 2025-12-13 21:46:34.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:46:34.101 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:46:34.184 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:47:24.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42668 10 6452 1 2025-12-13 21:48:25.311 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40374 10 6452 1 2025-12-13 21:45:15.623 00:05:02.418 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:45:15.626 00:05:02.414 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:49:25.668 00:00:10.809 TCP 1.101.0.1:3000 -> 23.104.0.1:57968 10 6452 1 2025-12-13 21:50:26.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6452 1 2025-12-13 21:51:34.273 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:51:34.235 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:51:33.969 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:51:33.923 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:51:34.007 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:51:26.921 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44442 10 6452 1 2025-12-13 21:52:27.328 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40358 10 6452 1 2025-12-13 21:53:27.690 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50442 10 6452 1 2025-12-13 21:54:28.113 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 10 6452 1 2025-12-13 21:51:15.626 00:05:02.418 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 21:51:15.629 00:05:02.414 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 21:55:28.479 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33460 10 6452 1 2025-12-13 21:56:33.992 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:56:34.258 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 21:56:34.184 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 21:56:34.343 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 21:56:34.345 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 21:56:28.844 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 10 6452 1 2025-12-13 21:57:29.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45826 10 6452 1 2025-12-13 21:58:29.662 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48814 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 905, avg pps: 0, avg bpp: 408 Time window: 2025-12-13 20:57:15 - 2025-12-13 21:58:39 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0049s User: 0.0000s Wall: 0.0018s flows/second: 76708.4 Runtime: 0.0018s