Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-22 00:59:22.463 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-12-22 01:00:29.256 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:00:28.961 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:00:29.073 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:00:29.173 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:00:29.043 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:00:22.868 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60660 10 6452 1 2025-12-22 00:57:19.919 00:05:02.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 00:57:19.917 00:05:02.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:01:23.272 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-12-22 01:02:23.682 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49494 10 6452 1 2025-12-22 01:03:24.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45580 10 6452 1 2025-12-22 01:04:24.518 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6452 1 2025-12-22 01:05:29.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:05:28.939 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:05:28.937 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:05:29.168 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:05:29.163 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:05:24.911 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42242 10 6452 1 2025-12-22 01:06:25.274 00:00:10.814 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-12-22 01:03:19.923 00:05:02.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:03:19.921 00:05:02.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:07:26.147 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49108 10 6452 1 2025-12-22 01:08:26.554 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48718 10 6452 1 2025-12-22 01:09:26.960 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-12-22 01:10:29.213 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:10:29.292 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:10:29.230 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:10:29.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:10:29.200 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:10:27.365 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56990 10 6452 1 2025-12-22 01:11:27.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35164 10 6452 1 2025-12-22 01:12:28.145 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-12-22 01:09:19.923 00:05:02.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:09:19.921 00:05:02.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:13:28.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50214 10 6452 1 2025-12-22 01:14:28.922 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:51408 10 6452 1 2025-12-22 01:15:29.692 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:15:29.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:15:29.368 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:15:29.264 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:15:29.609 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:15:29.299 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52092 10 6452 1 2025-12-22 01:16:29.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-12-22 01:17:30.136 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:57326 10 6452 1 2025-12-22 01:18:30.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-12-22 01:15:19.921 00:05:02.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:15:19.924 00:05:02.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:19:30.923 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-12-22 01:20:29.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:20:29.672 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:20:29.520 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:20:29.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:20:29.790 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:20:31.297 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-12-22 01:21:31.700 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55672 10 6452 1 2025-12-22 01:22:32.111 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38276 10 6452 1 2025-12-22 01:23:32.475 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54046 10 6452 1 2025-12-22 01:24:32.884 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50768 10 6452 1 2025-12-22 01:21:19.924 00:05:02.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:21:19.922 00:05:02.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:25:29.662 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:25:29.738 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:25:29.631 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:25:29.580 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:25:29.598 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:25:33.296 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55732 10 6452 1 2025-12-22 01:26:33.699 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-12-22 01:27:34.071 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57450 10 6452 1 2025-12-22 01:28:34.472 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42376 10 6452 1 2025-12-22 01:29:34.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44860 10 6452 1 2025-12-22 01:30:29.698 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:30:29.514 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:30:29.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:30:29.670 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:30:29.617 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:30:35.283 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43782 10 6452 1 2025-12-22 01:27:19.927 00:05:02.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:27:19.926 00:05:02.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:31:35.684 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38188 10 6452 1 2025-12-22 01:32:36.112 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55846 10 6452 1 2025-12-22 01:33:36.512 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:35208 10 6452 1 2025-12-22 01:34:36.909 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51308 10 6452 1 2025-12-22 01:35:29.593 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:35:29.728 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:35:29.593 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:35:29.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:35:29.676 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:35:37.279 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 10 6452 1 2025-12-22 01:36:37.686 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 10 6452 1 2025-12-22 01:33:19.927 00:05:02.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:33:19.929 00:05:02.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:37:38.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48470 10 6452 1 2025-12-22 01:38:38.519 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-12-22 01:39:38.885 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42118 10 6452 1 2025-12-22 01:40:29.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:40:29.545 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:40:29.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:40:29.282 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:40:29.437 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:40:39.299 00:00:10.599 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-12-22 01:41:39.941 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-12-22 01:42:40.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41628 10 6452 1 2025-12-22 01:39:19.934 00:05:02.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:39:19.932 00:05:02.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:43:40.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50880 10 6452 1 2025-12-22 01:44:41.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56978 10 6452 1 2025-12-22 01:45:29.974 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:45:29.782 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:45:29.972 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:45:30.013 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:45:30.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:45:41.583 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45816 10 6452 1 2025-12-22 01:46:41.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39328 10 6452 1 2025-12-22 01:47:42.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-12-22 01:48:42.811 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:40490 10 6452 1 2025-12-22 01:45:19.933 00:05:02.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:45:19.936 00:05:02.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:49:43.200 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43760 10 6452 1 2025-12-22 01:50:30.151 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:50:29.796 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:50:30.068 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:50:30.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:50:30.068 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:50:43.606 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-12-22 01:51:43.974 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:37248 12 10369 1 2025-12-22 01:52:44.462 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36198 10 6452 1 2025-12-22 01:53:44.825 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55264 10 6452 1 2025-12-22 01:54:45.232 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:41386 10 6452 1 2025-12-22 01:51:19.933 00:05:02.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 01:51:19.938 00:05:02.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 01:55:29.847 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:55:30.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 01:55:30.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 01:55:30.285 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 01:55:30.276 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 01:55:45.608 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40460 10 6452 1 2025-12-22 01:56:46.011 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-12-22 01:57:46.418 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 Summary: total flows: 139, total bytes: 414465, total packets: 1012, avg bps: 911, avg pps: 0, avg bpp: 409 Time window: 2025-12-22 00:57:19 - 2025-12-22 01:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0042s User: 0.0010s Wall: 0.0024s flows/second: 58973.1 Runtime: 0.0024s