Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-13 18:59:13.922 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-12-13 18:56:15.565 00:05:02.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:00:14.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38072 10 6452 1 2025-12-13 19:01:30.883 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 18:57:15.569 00:05:02.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:01:14.715 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58802 10 6452 1 2025-12-13 19:01:30.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:01:30.548 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:01:30.801 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:01:30.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:02:15.148 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49332 10 6452 1 2025-12-13 19:03:15.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47706 10 6452 1 2025-12-13 19:04:15.920 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-12-13 19:05:16.303 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50370 10 6452 1 2025-12-13 19:02:15.567 00:05:02.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:06:30.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:06:16.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-12-13 19:06:30.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:06:30.954 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:06:30.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:06:31.037 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:03:15.570 00:05:02.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:07:17.102 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34820 10 6452 1 2025-12-13 19:08:17.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52044 10 6452 1 2025-12-13 19:09:17.910 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51312 12 6556 1 2025-12-13 19:10:18.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37080 10 6452 1 2025-12-13 19:11:30.784 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:11:30.777 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:11:18.724 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-12-13 19:11:30.955 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:11:30.883 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:11:31.038 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:08:15.568 00:05:02.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:12:19.133 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-12-13 19:09:15.569 00:05:02.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:13:19.497 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59804 10 6452 1 2025-12-13 19:14:19.897 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:37442 12 10375 1 2025-12-13 19:15:20.381 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49654 10 6452 1 2025-12-13 19:16:30.925 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:16:30.942 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:16:30.915 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:16:30.998 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:16:20.781 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55506 10 6452 1 2025-12-13 19:16:31.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:17:21.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-12-13 19:14:15.569 00:05:02.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:18:21.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43768 10 6452 1 2025-12-13 19:15:15.571 00:05:02.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:19:21.997 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6452 1 2025-12-13 19:20:22.360 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-12-13 19:21:22.717 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:36706 10 6452 1 2025-12-13 19:21:31.245 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:21:31.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:21:30.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:21:31.130 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:21:31.070 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:22:23.312 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-12-13 19:23:23.675 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46416 10 6452 1 2025-12-13 19:20:15.571 00:05:02.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:24:24.108 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38930 10 6452 1 2025-12-13 19:21:15.574 00:05:02.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:25:24.475 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:55192 10 6452 1 2025-12-13 19:26:31.409 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:26:31.329 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:26:31.236 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:26:31.325 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:26:31.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:26:24.943 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6452 1 2025-12-13 19:27:25.357 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-12-13 19:28:25.756 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 11 6504 1 2025-12-13 19:29:26.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53798 10 6452 1 2025-12-13 19:26:15.574 00:05:02.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:30:26.598 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-12-13 19:27:15.577 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:31:31.422 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:31:31.398 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:31:31.330 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:31:31.266 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:31:31.340 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:31:27.009 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6452 1 2025-12-13 19:32:27.371 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54316 10 6452 1 2025-12-13 19:33:27.779 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-12-13 19:34:28.193 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:53412 10 6452 1 2025-12-13 19:35:28.583 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33656 10 6452 1 2025-12-13 19:32:15.575 00:05:02.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:36:31.721 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:36:31.945 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:36:31.399 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:36:31.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:36:31.759 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:36:28.949 00:00:10.565 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-12-13 19:33:15.577 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:37:29.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40344 10 6452 1 2025-12-13 19:38:29.957 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-12-13 19:39:30.323 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37072 10 6452 1 2025-12-13 19:40:30.702 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-12-13 19:41:31.598 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:41:31.588 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:41:31.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:41:31.516 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:41:31.514 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:41:31.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44998 10 6452 1 2025-12-13 19:38:15.578 00:05:02.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:42:31.513 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-12-13 19:39:15.581 00:05:02.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:43:31.920 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35394 10 6452 1 2025-12-13 19:44:32.325 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-12-13 19:45:32.691 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35076 10 6452 1 2025-12-13 19:46:31.970 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:46:31.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:46:31.720 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:46:31.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:46:31.604 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:46:33.054 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-12-13 19:47:33.472 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47486 10 6452 1 2025-12-13 19:44:15.580 00:05:02.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:48:33.874 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41784 10 6452 1 2025-12-13 19:45:15.581 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:49:34.239 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42324 10 6452 1 2025-12-13 19:50:34.639 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44494 10 6452 1 2025-12-13 19:51:31.911 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:51:31.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:51:31.791 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:51:31.829 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:51:31.910 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:51:35.041 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52064 10 6452 1 2025-12-13 19:52:35.449 00:00:11.096 TCP 1.101.0.1:3000 -> 23.104.0.1:43658 10 6452 1 2025-12-13 19:53:36.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43916 10 6452 1 2025-12-13 19:50:15.581 00:05:02.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-13 19:54:36.987 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58732 10 6452 1 2025-12-13 19:51:15.583 00:05:02.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-13 19:55:37.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6452 1 2025-12-13 19:56:32.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-13 19:56:32.173 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:56:31.800 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-13 19:56:32.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-13 19:56:31.882 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-13 19:56:37.756 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52122 10 6452 1 2025-12-13 19:57:38.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-12-13 19:58:38.558 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44262 10 6452 1 Summary: total flows: 140, total bytes: 421079, total packets: 1025, avg bps: 897, avg pps: 0, avg bpp: 410 Time window: 2025-12-13 18:56:15 - 2025-12-13 19:58:48 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0033s User: 0.0011s Wall: 0.0025s flows/second: 56494.4 Runtime: 0.0025s