Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-24 17:58:56.155 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56854 10 6452 1 2025-12-24 17:59:56.553 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 10 6452 1 2025-12-24 18:00:57.012 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50880 10 6452 1 2025-12-24 17:57:21.348 00:05:02.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 17:57:21.352 00:05:02.500 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:01:47.366 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:01:47.366 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:01:47.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:01:47.444 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:01:47.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:01:57.407 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 12 10369 1 2025-12-24 18:02:57.889 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:32890 10 6452 1 2025-12-24 18:03:58.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38748 10 6452 1 2025-12-24 18:04:58.686 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52474 10 6452 1 2025-12-24 18:05:59.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39782 10 6452 1 2025-12-24 18:06:47.408 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:06:47.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:06:47.347 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:06:47.239 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:06:47.321 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:06:59.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-12-24 18:03:21.350 00:05:02.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:03:21.353 00:05:02.500 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:07:59.922 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42362 10 6452 1 2025-12-24 18:09:00.323 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-12-24 18:10:00.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36380 10 6452 1 2025-12-24 18:11:01.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6452 1 2025-12-24 18:11:47.399 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:11:47.607 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:11:47.546 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:11:47.438 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:11:47.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:12:01.513 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 10 6452 1 2025-12-24 18:13:01.893 00:00:11.114 TCP 1.101.0.1:3000 -> 23.104.0.1:38842 12 6556 1 2025-12-24 18:09:21.352 00:05:02.515 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:09:21.355 00:05:02.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:14:03.066 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34052 10 6452 1 2025-12-24 18:15:03.465 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35846 10 6452 1 2025-12-24 18:16:03.868 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35106 10 6452 1 2025-12-24 18:16:47.717 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:16:47.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:16:47.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:16:47.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:16:47.634 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:17:04.284 00:00:11.214 TCP 1.101.0.1:3000 -> 23.104.0.1:38978 10 6452 1 2025-12-24 18:18:05.531 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-12-24 18:19:05.937 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:43664 10 6452 1 2025-12-24 18:15:21.352 00:05:02.518 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:15:21.355 00:05:02.512 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:20:06.366 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 10 6452 1 2025-12-24 18:21:06.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36886 10 6452 1 2025-12-24 18:21:48.028 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:21:47.719 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:21:47.960 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:21:47.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:21:47.945 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:22:07.177 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:41878 12 10369 1 2025-12-24 18:23:07.658 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46382 10 6452 1 2025-12-24 18:24:08.025 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33106 10 6452 1 2025-12-24 18:25:08.431 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-12-24 18:21:21.357 00:05:02.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:21:21.354 00:05:02.517 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:26:08.837 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:47358 10 6452 1 2025-12-24 18:26:47.647 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:26:47.802 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:26:47.756 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:26:47.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:26:47.825 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:27:09.227 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55884 10 6452 1 2025-12-24 18:28:09.585 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45052 10 6452 1 2025-12-24 18:29:09.989 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 10 6452 1 2025-12-24 18:30:10.394 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60676 10 6452 1 2025-12-24 18:27:21.354 00:05:02.517 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:31:10.797 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58418 10 6452 1 2025-12-24 18:27:21.357 00:05:02.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:31:47.929 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:31:47.948 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:31:47.792 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:31:47.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:31:48.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:32:11.194 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59318 10 6452 1 2025-12-24 18:33:11.565 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57336 10 6452 1 2025-12-24 18:34:11.925 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:54810 10 6452 1 2025-12-24 18:35:12.372 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48640 10 6452 1 2025-12-24 18:36:12.743 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52092 10 6452 1 2025-12-24 18:36:48.059 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:36:48.159 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:36:47.904 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:36:47.948 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:36:48.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:33:21.358 00:05:02.512 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:37:13.160 00:00:10.644 TCP 1.101.0.1:3000 -> 23.104.0.1:45842 10 6452 1 2025-12-24 18:33:21.355 00:05:02.517 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:38:13.840 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-12-24 18:39:14.265 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 10 6452 1 2025-12-24 18:40:14.635 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44954 10 6452 1 2025-12-24 18:41:15.056 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6452 1 2025-12-24 18:41:48.383 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:41:48.255 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:41:48.255 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:41:48.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:41:48.301 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:42:15.459 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45220 10 6452 1 2025-12-24 18:39:21.360 00:05:02.514 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:39:21.359 00:05:02.518 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:43:15.858 00:00:16.507 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-12-24 18:44:22.423 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-12-24 18:45:22.794 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52364 10 6452 1 2025-12-24 18:46:23.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48748 10 6452 1 2025-12-24 18:46:48.314 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:46:48.231 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:46:48.234 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:46:48.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:46:48.084 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:47:23.607 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:32966 10 6452 1 2025-12-24 18:48:23.968 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-12-24 18:45:21.362 00:05:02.517 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:45:21.361 00:05:02.522 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:49:24.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-12-24 18:50:24.774 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58434 10 6452 1 2025-12-24 18:51:25.180 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:38908 12 10375 1 2025-12-24 18:51:48.344 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:51:48.267 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:51:48.214 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:51:48.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:51:48.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:52:25.655 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35696 10 6452 1 2025-12-24 18:53:26.059 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-12-24 18:54:26.462 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:56582 10 6452 1 2025-12-24 18:51:21.363 00:05:02.519 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-24 18:51:21.361 00:05:02.524 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-24 18:55:26.857 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41672 10 6452 1 2025-12-24 18:56:27.269 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-12-24 18:56:48.578 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-24 18:56:48.316 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-24 18:56:48.434 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:56:48.497 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-24 18:56:48.579 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-24 18:57:27.681 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54502 10 6452 1 2025-12-24 18:58:28.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 Summary: total flows: 140, total bytes: 428861, total packets: 1028, avg bps: 933, avg pps: 0, avg bpp: 417 Time window: 2025-12-24 17:57:21 - 2025-12-24 18:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0010s Wall: 0.0018s flows/second: 77477.6 Runtime: 0.0018s