Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-14 18:59:28.144 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-12-14 19:00:28.563 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-12-14 18:57:16.097 00:05:02.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 18:57:16.100 00:05:02.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:01:28.968 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49268 10 6452 1 2025-12-14 19:01:59.864 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:01:59.904 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:02:00.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:02:00.074 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:02:00.069 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:02:29.383 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43948 10 6452 1 2025-12-14 19:03:29.793 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40804 10 6452 1 2025-12-14 19:04:30.218 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56032 10 6452 1 2025-12-14 19:05:30.621 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6452 1 2025-12-14 19:06:30.997 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58208 10 6452 1 2025-12-14 19:07:00.173 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:07:00.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:07:00.176 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:07:00.261 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:07:00.090 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:03:16.097 00:05:02.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:03:16.101 00:05:02.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:07:31.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42028 10 6452 1 2025-12-14 19:08:31.765 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-12-14 19:09:32.183 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-12-14 19:10:32.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55010 10 6452 1 2025-12-14 19:11:32.982 00:00:13.796 TCP 1.101.0.1:3000 -> 23.104.0.1:54848 10 6452 1 2025-12-14 19:11:59.770 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:11:59.926 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:11:59.593 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:11:59.840 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:11:59.923 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:12:36.823 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-12-14 19:09:16.101 00:05:02.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:09:16.102 00:05:02.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:13:37.224 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 10 6452 1 2025-12-14 19:14:37.629 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41312 10 6452 1 2025-12-14 19:15:38.035 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53258 10 6452 1 2025-12-14 19:16:38.396 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42120 10 6452 1 2025-12-14 19:16:59.907 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:16:59.901 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:16:59.984 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:17:00.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:17:00.064 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:17:38.763 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 10 6452 1 2025-12-14 19:18:39.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52262 10 6452 1 2025-12-14 19:15:16.100 00:05:02.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:15:16.103 00:05:02.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:19:39.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46526 10 6452 1 2025-12-14 19:20:39.950 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-12-14 19:22:00.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:21:40.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53064 10 6452 1 2025-12-14 19:21:59.972 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:21:59.935 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:22:00.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:22:00.228 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:22:40.720 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 10 6452 1 2025-12-14 19:23:41.144 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49976 10 6452 1 2025-12-14 19:24:41.554 00:00:10.630 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 12 10375 1 2025-12-14 19:21:16.104 00:05:02.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:21:16.101 00:05:02.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:25:42.227 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47884 10 6452 1 2025-12-14 19:26:42.628 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-12-14 19:27:00.338 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:27:00.396 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:27:00.129 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:27:00.059 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:27:00.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:27:43.028 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58868 10 6452 1 2025-12-14 19:28:43.433 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48782 10 6452 1 2025-12-14 19:29:43.840 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:37924 10 6452 1 2025-12-14 19:30:44.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55366 10 6452 1 2025-12-14 19:27:16.107 00:05:02.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:27:16.104 00:05:02.412 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:31:44.632 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54706 10 6452 1 2025-12-14 19:32:00.282 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:32:00.337 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:32:00.106 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:32:00.283 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:32:00.366 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:32:45.053 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42582 10 6452 1 2025-12-14 19:33:45.454 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43754 10 6452 1 2025-12-14 19:34:45.860 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54534 10 6452 1 2025-12-14 19:35:46.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41168 10 6452 1 2025-12-14 19:36:46.677 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55396 10 6452 1 2025-12-14 19:37:00.408 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:37:00.391 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:37:00.518 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:37:00.359 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:37:00.326 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:33:16.108 00:05:02.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:33:16.105 00:05:02.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:37:47.108 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55716 10 6452 1 2025-12-14 19:38:47.523 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33284 10 6452 1 2025-12-14 19:39:47.931 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46518 10 6452 1 2025-12-14 19:40:48.357 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38384 10 6452 1 2025-12-14 19:41:48.757 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-12-14 19:42:00.676 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:42:00.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:42:00.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:42:00.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:42:00.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:42:49.164 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 10 6452 1 2025-12-14 19:39:16.106 00:05:02.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:39:16.108 00:05:02.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:43:49.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42736 10 6452 1 2025-12-14 19:44:49.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34240 10 6452 1 2025-12-14 19:45:50.394 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-12-14 19:47:00.730 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:46:50.797 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-12-14 19:47:00.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:47:00.656 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:47:00.603 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:47:00.478 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:47:51.207 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44676 10 6452 1 2025-12-14 19:48:51.565 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47252 10 6452 1 2025-12-14 19:45:16.109 00:05:02.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:45:16.111 00:05:02.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:49:51.929 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-12-14 19:50:52.346 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34198 10 6452 1 2025-12-14 19:52:00.781 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:52:00.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:52:00.617 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:52:00.641 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:52:00.698 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:51:52.746 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-12-14 19:52:53.151 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6452 1 2025-12-14 19:53:53.557 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37740 10 6452 1 2025-12-14 19:54:53.968 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34904 10 6452 1 2025-12-14 19:51:16.112 00:05:02.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-14 19:51:16.111 00:05:02.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-14 19:55:54.327 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-12-14 19:57:00.866 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-14 19:57:00.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-14 19:57:00.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-14 19:57:00.418 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:57:00.784 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-14 19:56:54.690 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47608 10 6452 1 2025-12-14 19:57:55.108 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 908, avg pps: 0, avg bpp: 409 Time window: 2025-12-14 18:57:16 - 2025-12-14 19:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0018s Wall: 0.0026s flows/second: 53276.8 Runtime: 0.0026s