Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-17 18:59:23.943 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34412 10 6452 1 2025-12-17 19:00:24.364 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-12-17 18:57:17.575 00:05:02.563 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 18:57:17.579 00:05:02.557 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:01:24.770 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6452 1 2025-12-17 19:02:25.190 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 10 6452 1 2025-12-17 19:03:26.447 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:03:26.388 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:03:26.461 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:03:26.561 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:03:26.543 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:03:25.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-12-17 19:04:26.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-12-17 19:05:26.406 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46686 10 6452 1 2025-12-17 19:06:26.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39978 10 6452 1 2025-12-17 19:03:17.579 00:05:02.558 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:03:17.578 00:05:02.563 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:07:27.187 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51532 10 6452 1 2025-12-17 19:08:26.195 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:08:26.440 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:08:26.238 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:08:26.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:08:26.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:08:27.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40480 10 6452 1 2025-12-17 19:09:27.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40440 10 6452 1 2025-12-17 19:10:28.396 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:49824 12 10375 1 2025-12-17 19:11:28.829 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43334 10 6452 1 2025-12-17 19:12:29.224 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 2025-12-17 19:09:17.587 00:05:02.554 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:13:26.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:09:17.590 00:05:02.549 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:13:26.565 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:13:26.514 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:13:26.157 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:13:26.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:13:29.629 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-12-17 19:14:30.039 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57642 10 6452 1 2025-12-17 19:15:30.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-12-17 19:16:30.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6452 1 2025-12-17 19:17:31.212 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-12-17 19:18:26.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:18:26.603 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:18:26.550 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:18:26.642 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:18:26.726 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:18:31.616 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-12-17 19:15:17.590 00:05:02.551 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:15:17.587 00:05:02.556 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:19:32.032 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58184 10 6452 1 2025-12-17 19:20:32.427 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37428 10 6452 1 2025-12-17 19:21:32.829 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42828 10 6452 1 2025-12-17 19:22:33.238 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42570 10 6452 1 2025-12-17 19:23:26.787 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:23:26.969 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:23:26.748 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:23:27.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:23:26.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:23:33.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-12-17 19:24:34.104 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38766 10 6452 1 2025-12-17 19:21:17.588 00:05:02.556 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:21:17.592 00:05:02.552 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:25:34.509 00:00:11.182 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-12-17 19:26:35.738 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58572 10 6452 1 2025-12-17 19:27:36.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38036 10 6452 1 2025-12-17 19:28:26.886 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:28:26.763 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:28:26.706 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:28:26.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:28:26.903 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:28:36.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-12-17 19:29:36.949 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53380 10 6452 1 2025-12-17 19:30:37.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39860 10 6452 1 2025-12-17 19:27:17.598 00:05:02.548 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:27:17.596 00:05:02.553 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:31:37.767 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39130 10 6452 1 2025-12-17 19:32:38.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-12-17 19:33:26.967 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:33:26.826 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:33:26.889 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:33:26.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:33:26.885 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:33:38.595 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:41786 10 6452 1 2025-12-17 19:34:38.988 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54612 10 6452 1 2025-12-17 19:35:39.353 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32982 12 6556 1 2025-12-17 19:36:39.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-12-17 19:33:17.593 00:05:02.556 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:33:17.595 00:05:02.551 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:37:40.181 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6452 1 2025-12-17 19:38:27.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:38:26.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:38:26.947 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:38:27.068 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:38:27.151 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:38:40.580 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52058 10 6452 1 2025-12-17 19:39:40.948 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54246 10 6452 1 2025-12-17 19:40:41.362 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-12-17 19:41:41.724 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36376 10 6452 1 2025-12-17 19:42:42.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-12-17 19:39:17.596 00:05:02.551 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:39:17.593 00:05:02.556 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:43:27.434 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:43:27.293 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:43:27.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:43:27.059 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:43:27.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:43:42.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-12-17 19:44:42.921 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-12-17 19:45:43.330 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33906 10 6452 1 2025-12-17 19:46:43.731 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42642 10 6452 1 2025-12-17 19:47:44.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45014 10 6452 1 2025-12-17 19:48:27.248 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:48:27.052 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:48:26.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:48:27.036 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:48:27.119 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:48:44.512 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52678 10 6452 1 2025-12-17 19:45:17.600 00:05:02.549 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:45:17.597 00:05:02.554 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:49:44.917 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53954 10 6452 1 2025-12-17 19:50:45.285 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-12-17 19:51:45.689 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36798 10 6452 1 2025-12-17 19:52:46.112 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 10 6452 1 2025-12-17 19:53:27.362 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-17 19:53:27.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:53:27.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:53:27.207 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:53:27.280 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:53:46.474 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6452 1 2025-12-17 19:54:46.878 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53518 10 6452 1 2025-12-17 19:51:17.602 00:05:02.547 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-17 19:51:17.599 00:05:02.553 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-17 19:55:47.281 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47106 10 6452 1 2025-12-17 19:56:47.643 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6452 1 2025-12-17 19:57:48.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-12-17 19:58:27.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-17 19:58:27.283 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:58:27.362 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-17 19:58:27.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-17 19:58:27.445 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 903, avg pps: 0, avg bpp: 408 Time window: 2025-12-17 18:57:17 - 2025-12-17 19:58:27 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0026s Wall: 0.0021s flows/second: 67283.1 Runtime: 0.0021s