Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-22 18:59:24.264 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45852 10 6452 1 2025-12-22 19:00:24.667 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-12-22 19:00:50.627 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:00:50.873 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:00:50.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:00:50.704 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:00:50.787 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 18:57:20.320 00:05:02.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 18:57:20.324 00:05:02.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:01:25.069 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33680 10 6452 1 2025-12-22 19:02:25.484 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55684 10 6452 1 2025-12-22 19:03:25.903 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49156 10 6452 1 2025-12-22 19:04:26.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60062 10 6452 1 2025-12-22 19:05:26.718 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37126 10 6452 1 2025-12-22 19:05:50.601 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:05:50.899 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:05:50.689 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:05:50.849 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:05:50.933 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:06:27.099 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45550 10 6452 1 2025-12-22 19:03:20.325 00:05:02.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:03:20.322 00:05:02.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:07:27.459 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43050 10 6452 1 2025-12-22 19:08:27.824 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6452 1 2025-12-22 19:09:28.225 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42394 10 6452 1 2025-12-22 19:10:28.591 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37060 10 6452 1 2025-12-22 19:10:50.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:10:50.840 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:10:50.667 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:10:51.034 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:10:51.117 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:11:28.988 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49550 10 6452 1 2025-12-22 19:12:29.392 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-12-22 19:09:20.325 00:05:02.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:09:20.324 00:05:02.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:13:29.794 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40818 10 6452 1 2025-12-22 19:14:30.199 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53518 10 6452 1 2025-12-22 19:15:30.556 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-12-22 19:15:50.865 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:15:50.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:15:50.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:15:51.157 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:15:51.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:16:30.933 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60990 10 6452 1 2025-12-22 19:17:31.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53156 10 6452 1 2025-12-22 19:18:31.772 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-12-22 19:15:20.325 00:05:02.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:15:20.328 00:05:02.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:19:32.177 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59394 10 6452 1 2025-12-22 19:20:32.547 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-12-22 19:20:51.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:20:51.154 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:20:51.031 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:20:51.171 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:20:51.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:21:32.945 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:59858 10 6452 1 2025-12-22 19:22:33.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41676 10 6452 1 2025-12-22 19:23:33.727 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-12-22 19:24:34.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60530 10 6452 1 2025-12-22 19:21:20.330 00:05:02.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:21:20.327 00:05:02.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:25:34.538 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55472 10 6452 1 2025-12-22 19:25:51.234 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:25:50.922 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:25:51.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:25:51.180 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:25:51.264 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:26:34.948 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:41162 11 6504 1 2025-12-22 19:27:35.408 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-12-22 19:28:36.178 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-12-22 19:29:36.578 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 2025-12-22 19:30:36.983 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55404 10 6452 1 2025-12-22 19:30:51.407 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:30:51.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:30:51.321 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:30:50.928 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:30:51.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:27:20.334 00:05:02.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:27:20.337 00:05:02.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:31:37.398 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47536 10 6452 1 2025-12-22 19:32:37.808 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:35266 10 6452 1 2025-12-22 19:33:38.187 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45922 10 6452 1 2025-12-22 19:34:38.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56042 10 6452 1 2025-12-22 19:35:38.957 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 10 6452 1 2025-12-22 19:35:51.367 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:35:51.488 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:35:51.166 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:35:51.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:35:51.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:36:39.335 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:59458 12 10369 1 2025-12-22 19:33:20.335 00:05:02.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:33:20.338 00:05:02.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:37:39.827 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44694 10 6452 1 2025-12-22 19:38:40.194 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52204 10 6452 1 2025-12-22 19:39:40.557 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-12-22 19:40:51.726 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:40:51.458 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:40:40.959 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 11 6504 1 2025-12-22 19:40:51.638 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:40:51.603 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:40:51.644 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:41:41.430 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38974 10 6452 1 2025-12-22 19:42:41.801 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50106 10 6452 1 2025-12-22 19:39:20.340 00:05:02.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:39:20.337 00:05:02.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:43:42.212 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 10 6452 1 2025-12-22 19:44:42.617 00:00:10.684 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-12-22 19:45:51.789 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:45:51.487 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:45:43.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38420 10 6452 1 2025-12-22 19:45:51.578 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:45:51.411 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:45:51.707 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:46:43.748 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-12-22 19:47:44.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-12-22 19:48:44.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58424 10 6452 1 2025-12-22 19:45:20.341 00:05:02.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:45:20.344 00:05:02.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:49:44.921 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-12-22 19:50:51.688 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:50:51.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:50:51.849 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:50:51.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:50:51.771 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:50:45.330 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-12-22 19:51:45.742 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35816 10 6452 1 2025-12-22 19:52:46.148 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:59462 10 6452 1 2025-12-22 19:53:46.574 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59646 10 6452 1 2025-12-22 19:54:46.979 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40968 10 6452 1 2025-12-22 19:51:20.346 00:05:02.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-22 19:51:20.345 00:05:02.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-22 19:55:51.861 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-22 19:55:51.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:55:51.865 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-22 19:55:51.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-22 19:55:51.948 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-22 19:55:47.385 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50232 10 6452 1 2025-12-22 19:56:47.785 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53456 10 6452 1 2025-12-22 19:57:48.221 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:45286 11 6504 1 Summary: total flows: 139, total bytes: 414621, total packets: 1015, avg bps: 911, avg pps: 0, avg bpp: 408 Time window: 2025-12-22 18:57:20 - 2025-12-22 19:57:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0029s Wall: 0.0018s flows/second: 79073.4 Runtime: 0.0018s