Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-23 17:59:37.339 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-12-23 18:00:37.739 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57542 10 6452 1 2025-12-23 18:01:18.349 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:01:18.172 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:01:18.273 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:01:18.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:01:18.432 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 17:57:20.827 00:05:02.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 17:57:20.830 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:01:38.111 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-12-23 18:02:38.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53740 10 6452 1 2025-12-23 18:03:38.919 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-12-23 18:04:39.320 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41868 10 6452 1 2025-12-23 18:05:39.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49098 10 6452 1 2025-12-23 18:06:18.353 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:06:18.557 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:06:18.266 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:06:18.639 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:06:18.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:06:40.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-12-23 18:03:20.832 00:05:02.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:03:20.831 00:05:02.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:07:40.511 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-12-23 18:08:40.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44508 10 6452 1 2025-12-23 18:09:41.318 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38368 10 6452 1 2025-12-23 18:10:41.725 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53986 10 6452 1 2025-12-23 18:11:18.699 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:11:18.698 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:11:18.431 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:11:18.598 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:11:18.680 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:11:42.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40810 10 6452 1 2025-12-23 18:12:42.538 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6452 1 2025-12-23 18:09:20.831 00:05:02.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:09:20.834 00:05:02.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:13:42.940 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-12-23 18:14:43.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-12-23 18:15:43.762 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-12-23 18:16:18.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:16:18.665 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:16:18.711 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:16:18.609 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:16:18.496 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:16:44.172 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6452 1 2025-12-23 18:17:44.576 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54028 10 6452 1 2025-12-23 18:18:44.939 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38420 10 6452 1 2025-12-23 18:15:20.837 00:05:02.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:15:20.835 00:05:02.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:19:45.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41720 10 6452 1 2025-12-23 18:20:45.763 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 10 6452 1 2025-12-23 18:21:18.844 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:21:18.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:21:18.706 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:21:18.775 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:21:18.858 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:21:46.246 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6452 1 2025-12-23 18:22:46.644 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:38756 11 6504 1 2025-12-23 18:23:47.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58096 12 6556 1 2025-12-23 18:24:47.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36574 10 6452 1 2025-12-23 18:21:20.837 00:05:02.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:21:20.834 00:05:02.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:25:47.912 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-12-23 18:26:18.859 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:26:19.057 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:26:18.542 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:26:18.864 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:26:18.947 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:26:48.282 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 10 6452 1 2025-12-23 18:27:48.685 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57964 10 6452 1 2025-12-23 18:28:49.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-12-23 18:29:49.510 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56092 10 6452 1 2025-12-23 18:30:49.879 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-12-23 18:31:19.342 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:31:18.869 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:31:19.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:31:19.055 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:31:19.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:27:20.837 00:05:02.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:27:20.836 00:05:02.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:31:50.286 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58726 10 6452 1 2025-12-23 18:32:50.704 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47812 10 6452 1 2025-12-23 18:33:51.112 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34714 10 6452 1 2025-12-23 18:34:51.527 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52226 10 6452 1 2025-12-23 18:35:51.933 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37724 10 6452 1 2025-12-23 18:36:18.891 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:36:19.057 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:36:18.698 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:36:18.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:36:18.975 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:36:52.353 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6452 1 2025-12-23 18:33:20.842 00:05:02.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:33:20.838 00:05:02.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:37:52.714 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57920 10 6452 1 2025-12-23 18:38:53.104 00:00:10.947 TCP 1.101.0.1:3000 -> 23.104.0.1:47352 10 6452 1 2025-12-23 18:39:54.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43872 10 6452 1 2025-12-23 18:40:54.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51488 10 6452 1 2025-12-23 18:41:19.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:41:18.945 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:41:19.074 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:41:18.815 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:41:18.896 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:41:54.922 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-12-23 18:42:55.301 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-12-23 18:39:20.840 00:05:02.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:39:20.842 00:05:02.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:43:56.185 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46968 10 6452 1 2025-12-23 18:44:56.579 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42930 10 6452 1 2025-12-23 18:45:56.980 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-12-23 18:46:19.090 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:46:19.133 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:46:19.134 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:46:19.218 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:46:19.009 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:46:57.352 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51966 10 6452 1 2025-12-23 18:47:57.755 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52774 10 6452 1 2025-12-23 18:48:58.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43820 10 6452 1 2025-12-23 18:45:20.840 00:05:02.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:45:20.842 00:05:02.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:49:58.534 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-12-23 18:50:58.938 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57574 10 6452 1 2025-12-23 18:51:19.635 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:51:19.653 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:51:19.314 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:51:19.235 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:51:19.552 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:51:59.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-12-23 18:52:59.758 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33788 10 6452 1 2025-12-23 18:54:00.167 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-12-23 18:55:00.571 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6452 1 2025-12-23 18:51:20.841 00:05:02.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 18:51:20.843 00:05:02.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:56:00.974 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40804 10 6452 1 2025-12-23 18:56:19.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:56:19.474 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 18:56:19.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 18:56:19.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 18:56:19.557 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:57:01.346 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-12-23 18:58:01.715 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36238 10 6452 1 Summary: total flows: 139, total bytes: 410704, total packets: 1013, avg bps: 899, avg pps: 0, avg bpp: 405 Time window: 2025-12-23 17:57:20 - 2025-12-23 18:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0050s User: 0.0013s Wall: 0.0052s flows/second: 26506.4 Runtime: 0.0053s