Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-23 18:59:02.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52742 10 6452 1 2025-12-23 19:00:02.524 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-12-23 19:01:02.888 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:41588 10 6452 1 2025-12-23 19:01:19.573 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:01:19.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:01:19.342 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:01:19.496 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:01:19.655 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 18:57:20.845 00:05:02.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 18:57:20.843 00:05:02.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:02:03.274 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:48292 12 10375 1 2025-12-23 19:03:03.775 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33146 10 6452 1 2025-12-23 19:04:04.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40944 10 6452 1 2025-12-23 19:05:04.586 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49750 10 6452 1 2025-12-23 19:06:19.606 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:06:19.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:06:19.478 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:06:19.751 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:06:04.998 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 2025-12-23 19:06:19.833 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:07:05.408 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36552 10 6452 1 2025-12-23 19:03:20.852 00:05:02.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:03:20.850 00:05:02.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:08:05.768 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58614 10 6452 1 2025-12-23 19:09:06.178 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56414 10 6452 1 2025-12-23 19:10:06.544 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54572 10 6452 1 2025-12-23 19:11:19.862 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:11:19.506 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:11:06.912 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 10 6452 1 2025-12-23 19:11:19.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:11:19.695 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:11:19.856 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:12:07.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42402 10 6452 1 2025-12-23 19:13:07.717 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46240 10 6452 1 2025-12-23 19:09:20.856 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:09:20.853 00:05:02.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:14:08.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50072 10 6452 1 2025-12-23 19:15:08.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54918 10 6452 1 2025-12-23 19:16:08.941 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54494 10 6452 1 2025-12-23 19:16:19.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:16:20.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:16:20.059 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:16:20.057 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:16:20.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:17:09.357 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36762 10 6452 1 2025-12-23 19:18:09.716 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-12-23 19:19:10.135 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-12-23 19:15:20.857 00:05:02.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:15:20.854 00:05:02.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:20:10.707 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48580 10 6452 1 2025-12-23 19:21:19.973 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:21:19.831 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:21:11.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43246 10 6452 1 2025-12-23 19:21:20.088 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:21:20.043 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:21:20.126 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:22:11.511 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-12-23 19:23:11.929 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-12-23 19:24:12.334 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42404 10 6452 1 2025-12-23 19:21:20.860 00:05:02.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:25:12.737 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35468 10 6452 1 2025-12-23 19:21:20.858 00:05:02.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:26:19.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:26:19.943 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:26:20.186 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:26:13.145 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-12-23 19:26:20.104 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:26:20.251 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:27:13.552 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54072 10 6452 1 2025-12-23 19:28:13.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-12-23 19:29:14.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53840 10 6452 1 2025-12-23 19:30:14.722 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40318 10 6452 1 2025-12-23 19:31:19.926 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:31:20.224 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:27:20.863 00:05:02.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:31:20.151 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:27:20.866 00:05:02.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:31:19.981 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:31:20.142 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:31:15.098 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:48424 10 6452 1 2025-12-23 19:32:15.457 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53016 10 6452 1 2025-12-23 19:33:15.860 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57920 10 6452 1 2025-12-23 19:34:16.275 00:00:10.687 TCP 1.101.0.1:3000 -> 23.104.0.1:43720 10 6452 1 2025-12-23 19:35:16.998 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45392 10 6452 1 2025-12-23 19:36:20.065 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:36:20.240 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:36:20.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:36:20.243 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:36:20.326 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:36:17.407 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-12-23 19:33:20.863 00:05:02.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:33:20.866 00:05:02.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:37:17.809 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-12-23 19:38:18.212 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44326 10 6452 1 2025-12-23 19:39:18.572 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55196 10 6452 1 2025-12-23 19:40:18.977 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55180 10 6452 1 2025-12-23 19:41:20.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:41:20.341 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:41:20.413 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:41:20.068 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:41:20.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:41:19.347 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44076 10 6452 1 2025-12-23 19:42:19.708 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60268 10 6452 1 2025-12-23 19:39:20.867 00:05:02.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:39:20.866 00:05:02.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:43:20.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34094 10 6452 1 2025-12-23 19:44:20.517 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-12-23 19:45:20.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58962 10 6452 1 2025-12-23 19:46:20.659 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:46:20.699 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:46:20.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:46:20.658 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:46:20.741 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:46:21.317 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:53512 12 10375 1 2025-12-23 19:47:21.792 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55750 10 6452 1 2025-12-23 19:48:22.195 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33412 12 6556 1 2025-12-23 19:45:20.869 00:05:02.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:45:20.866 00:05:02.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:49:22.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 2025-12-23 19:50:23.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42588 10 6452 1 2025-12-23 19:51:20.602 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:51:20.519 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:51:20.613 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:51:20.406 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:51:20.521 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:51:23.401 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:60198 14 14298 1 2025-12-23 19:52:23.949 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-12-23 19:53:24.355 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-12-23 19:54:24.754 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37436 10 6452 1 2025-12-23 19:51:20.872 00:05:02.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-23 19:51:20.869 00:05:02.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-23 19:55:25.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41456 10 6452 1 2025-12-23 19:56:20.767 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-23 19:56:20.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-23 19:56:20.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-23 19:56:20.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:56:20.685 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-23 19:56:25.532 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:43166 10 6452 1 2025-12-23 19:57:25.969 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53348 10 6452 1 2025-12-23 19:58:26.380 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44746 10 6452 1 Summary: total flows: 140, total bytes: 432796, total packets: 1030, avg bps: 941, avg pps: 0, avg bpp: 420 Time window: 2025-12-23 18:57:20 - 2025-12-23 19:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0057s User: 0.0008s Wall: 0.0034s flows/second: 40985.7 Runtime: 0.0034s