Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-16 18:59:35.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34040 10 6452 1 2025-12-16 19:00:35.946 00:00:10.840 TCP 1.101.0.1:3000 -> 23.104.0.1:35470 10 6452 1 2025-12-16 18:57:17.094 00:05:02.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 18:57:17.092 00:05:02.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:01:36.839 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:59374 10 6452 1 2025-12-16 19:02:37.229 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-12-16 19:02:57.592 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:02:57.525 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:02:57.531 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:02:57.162 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:02:57.510 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:03:37.638 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42086 10 6452 1 2025-12-16 19:04:38.034 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60794 10 6452 1 2025-12-16 19:05:38.433 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-12-16 19:06:38.838 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:34878 10 6452 1 2025-12-16 19:03:17.092 00:05:02.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:03:17.096 00:05:02.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:07:39.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46006 10 6452 1 2025-12-16 19:07:57.543 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:07:57.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:07:57.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:07:57.253 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:07:57.461 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:08:39.632 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59014 10 6452 1 2025-12-16 19:09:40.030 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43596 10 6452 1 2025-12-16 19:10:40.438 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-12-16 19:11:40.834 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-12-16 19:12:41.297 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41924 10 6452 1 2025-12-16 19:12:57.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:12:57.922 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:12:57.514 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:12:57.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:12:57.556 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:09:17.098 00:05:02.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:09:17.094 00:05:02.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:13:41.694 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 6452 1 2025-12-16 19:14:42.106 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48302 10 6452 1 2025-12-16 19:15:42.514 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58246 10 6452 1 2025-12-16 19:16:42.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37302 10 6452 1 2025-12-16 19:17:57.921 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:17:43.282 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39682 10 6452 1 2025-12-16 19:17:57.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:17:57.875 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:17:57.818 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:17:57.838 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:18:43.643 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 2025-12-16 19:15:17.095 00:05:02.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:15:17.097 00:05:02.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:19:44.071 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42794 10 6452 1 2025-12-16 19:20:44.436 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-12-16 19:21:44.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41426 10 6452 1 2025-12-16 19:22:57.654 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:22:45.203 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40530 10 6452 1 2025-12-16 19:22:57.853 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:22:57.784 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:22:57.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:22:57.829 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:23:45.562 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6452 1 2025-12-16 19:24:45.965 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54056 10 6452 1 2025-12-16 19:21:17.098 00:05:02.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:21:17.096 00:05:02.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:25:46.331 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55816 10 6452 1 2025-12-16 19:26:46.729 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42944 10 6452 1 2025-12-16 19:27:57.997 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:27:57.917 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:27:58.078 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:27:58.012 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:27:57.914 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:27:47.133 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52512 10 6452 1 2025-12-16 19:28:47.493 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-12-16 19:29:47.892 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:42036 14 10479 1 2025-12-16 19:30:48.403 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 10 6452 1 2025-12-16 19:27:17.099 00:05:02.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:27:17.097 00:05:02.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:31:48.799 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-12-16 19:32:58.335 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:32:58.089 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:32:58.147 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:32:58.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:32:49.204 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48070 10 6452 1 2025-12-16 19:32:58.252 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:33:49.603 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51676 10 6452 1 2025-12-16 19:34:50.007 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35068 10 6452 1 2025-12-16 19:35:50.410 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40718 10 6452 1 2025-12-16 19:36:50.827 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54676 12 6556 1 2025-12-16 19:33:17.101 00:05:02.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:33:17.105 00:05:02.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:37:58.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:37:58.273 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:37:57.759 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:37:58.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:37:58.087 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:37:51.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38100 10 6452 1 2025-12-16 19:38:51.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53118 10 6452 1 2025-12-16 19:39:52.037 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44310 10 6452 1 2025-12-16 19:40:52.438 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51218 10 6452 1 2025-12-16 19:41:52.839 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:33334 10 6452 1 2025-12-16 19:42:58.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:42:58.306 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:42:58.173 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:42:58.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:42:58.181 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:42:53.282 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-12-16 19:39:17.104 00:05:02.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:39:17.102 00:05:02.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:43:53.689 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37380 10 6452 1 2025-12-16 19:44:54.057 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49834 10 6452 1 2025-12-16 19:45:54.463 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60718 10 6452 1 2025-12-16 19:46:54.866 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-12-16 19:47:58.358 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:47:58.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:47:58.252 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:47:58.198 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:47:58.279 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:47:55.236 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6452 1 2025-12-16 19:48:55.637 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37690 10 6452 1 2025-12-16 19:45:17.106 00:05:02.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:45:17.108 00:05:02.491 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:49:55.996 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-12-16 19:50:56.808 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41416 10 6452 1 2025-12-16 19:51:57.216 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6452 1 2025-12-16 19:52:58.799 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:52:58.714 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:52:58.714 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:52:58.363 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:52:58.717 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:52:57.633 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52320 10 6452 1 2025-12-16 19:53:58.003 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52696 10 6452 1 2025-12-16 19:54:58.366 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:52828 10 6452 1 2025-12-16 19:51:17.110 00:05:02.500 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-16 19:51:17.108 00:05:02.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-16 19:55:59.231 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38996 10 6452 1 2025-12-16 19:56:59.590 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57952 10 6452 1 2025-12-16 19:57:58.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-16 19:57:58.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-16 19:57:58.624 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-16 19:57:58.349 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:57:58.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-16 19:58:00.004 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 908, avg pps: 0, avg bpp: 408 Time window: 2025-12-16 18:57:17 - 2025-12-16 19:58:10 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0020s Wall: 0.0023s flows/second: 60509.4 Runtime: 0.0023s