Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-15 18:59:13.556 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-12-15 19:00:13.956 00:00:11.472 TCP 1.101.0.1:3000 -> 23.104.0.1:48494 10 6452 1 2025-12-15 18:57:16.623 00:05:02.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 18:57:16.626 00:05:02.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:01:15.485 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54982 10 6452 1 2025-12-15 19:02:28.953 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:02:28.866 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:02:28.863 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:02:28.706 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:02:28.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:02:15.895 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46598 10 6452 1 2025-12-15 19:03:16.311 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33202 10 6452 1 2025-12-15 19:04:16.671 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-12-15 19:05:17.093 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55936 10 6452 1 2025-12-15 19:06:17.488 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-12-15 19:03:16.628 00:05:02.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:03:16.625 00:05:02.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:07:28.859 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:07:28.682 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:07:28.697 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:07:28.512 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:07:28.776 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:07:17.887 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60306 12 6556 1 2025-12-15 19:08:18.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55468 10 6452 1 2025-12-15 19:09:18.714 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50232 10 6452 1 2025-12-15 19:10:19.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-12-15 19:11:19.522 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57054 10 6452 1 2025-12-15 19:12:28.956 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:12:28.922 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:12:28.883 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:12:28.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:12:28.873 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:12:19.927 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48860 10 6452 1 2025-12-15 19:09:16.632 00:05:02.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:09:16.630 00:05:02.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:13:20.346 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6452 1 2025-12-15 19:14:20.755 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47324 10 6452 1 2025-12-15 19:15:21.158 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47344 10 6452 1 2025-12-15 19:16:21.576 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53824 10 6452 1 2025-12-15 19:17:29.073 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:17:28.991 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:17:28.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:17:28.855 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:17:28.808 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:17:21.987 00:00:10.602 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 10 6452 1 2025-12-15 19:18:22.628 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48572 10 6452 1 2025-12-15 19:15:16.630 00:05:02.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:15:16.633 00:05:02.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:19:22.998 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45064 12 6556 1 2025-12-15 19:20:23.424 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39998 10 6452 1 2025-12-15 19:21:23.825 00:00:10.970 TCP 1.101.0.1:3000 -> 23.104.0.1:53636 10 6452 1 2025-12-15 19:22:29.768 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:22:29.689 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:22:29.682 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:22:29.597 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:22:29.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:22:24.832 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:46106 10 6452 1 2025-12-15 19:23:25.220 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57808 10 6452 1 2025-12-15 19:24:25.625 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38122 10 6452 1 2025-12-15 19:21:16.631 00:05:02.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:21:16.632 00:05:02.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:25:26.025 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-12-15 19:26:26.423 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50464 10 6452 1 2025-12-15 19:27:29.017 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:27:29.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:27:28.947 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:27:28.814 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:27:28.934 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:27:26.827 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48170 10 6452 1 2025-12-15 19:28:27.231 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50682 10 6452 1 2025-12-15 19:29:27.631 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-12-15 19:30:27.996 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40786 10 6452 1 2025-12-15 19:27:16.635 00:05:02.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:27:16.634 00:05:02.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:31:28.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52860 10 6452 1 2025-12-15 19:32:29.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:32:29.196 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:32:29.112 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:32:28.816 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:32:29.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:32:28.797 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58960 10 6452 1 2025-12-15 19:33:29.207 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34072 10 6452 1 2025-12-15 19:34:29.606 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-12-15 19:35:30.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53440 10 6452 1 2025-12-15 19:36:30.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59652 10 6452 1 2025-12-15 19:33:16.634 00:05:02.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:33:16.637 00:05:02.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:37:29.350 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:37:29.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:37:29.208 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:37:29.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:37:29.339 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:37:30.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35794 10 6452 1 2025-12-15 19:38:31.219 00:00:10.541 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-12-15 19:39:31.795 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51920 10 6452 1 2025-12-15 19:40:32.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54356 10 6452 1 2025-12-15 19:41:32.608 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-12-15 19:42:29.603 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:42:29.718 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:42:29.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:42:29.284 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:42:29.520 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:42:33.017 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33864 10 6452 1 2025-12-15 19:39:16.637 00:05:02.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:39:16.636 00:05:02.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:43:33.423 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33014 10 6452 1 2025-12-15 19:44:33.821 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48114 10 6452 1 2025-12-15 19:45:34.224 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37778 10 6452 1 2025-12-15 19:46:34.588 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42476 10 6452 1 2025-12-15 19:47:29.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:47:29.636 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:47:29.481 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:47:29.269 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:47:29.568 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:47:34.973 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-12-15 19:48:35.374 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54916 10 6452 1 2025-12-15 19:45:16.639 00:05:02.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:45:16.637 00:05:02.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:49:35.743 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:49128 10 6452 1 2025-12-15 19:50:36.549 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41146 10 6452 1 2025-12-15 19:51:36.945 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37346 10 6452 1 2025-12-15 19:52:29.606 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:52:29.649 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:52:29.616 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:52:29.524 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:52:29.538 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:52:37.362 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55824 10 6452 1 2025-12-15 19:53:37.774 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34788 10 6452 1 2025-12-15 19:54:38.179 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-12-15 19:51:16.640 00:05:02.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-15 19:51:16.636 00:05:02.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-15 19:55:38.546 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53864 10 6452 1 2025-12-15 19:56:38.954 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56494 10 6452 1 2025-12-15 19:57:29.781 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-15 19:57:29.541 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-15 19:57:29.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-15 19:57:29.658 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:57:29.698 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-15 19:57:39.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37090 10 6452 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 904, avg pps: 0, avg bpp: 405 Time window: 2025-12-15 18:57:16 - 2025-12-15 19:57:49 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0062s User: 0.0000s Wall: 0.0018s flows/second: 78614.9 Runtime: 0.0018s