Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-25 17:59:39.467 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56502 10 6452 1 2025-12-25 18:00:39.870 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-12-25 17:57:21.811 00:05:02.575 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 17:57:21.812 00:05:02.570 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:01:40.618 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:45518 12 10369 1 2025-12-25 18:02:16.149 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:02:16.176 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:02:16.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:02:16.086 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:02:16.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:02:41.060 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32798 10 6452 1 2025-12-25 18:03:41.462 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 10 6452 1 2025-12-25 18:04:41.859 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55202 10 6452 1 2025-12-25 18:05:42.277 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37556 10 6452 1 2025-12-25 18:06:42.646 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:55524 12 10375 1 2025-12-25 18:07:16.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:07:15.975 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:07:15.977 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:07:16.003 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:07:16.233 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:03:21.813 00:05:02.576 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:03:21.814 00:05:02.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:07:43.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37092 12 6556 1 2025-12-25 18:08:43.513 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40550 10 6452 1 2025-12-25 18:09:43.913 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45602 12 6556 1 2025-12-25 18:10:44.323 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53732 10 6452 1 2025-12-25 18:11:44.719 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-12-25 18:12:16.309 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:12:16.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:12:15.903 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:12:16.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:12:16.350 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:12:45.137 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-12-25 18:09:21.815 00:05:02.575 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:09:21.818 00:05:02.569 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:13:45.493 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51304 10 6452 1 2025-12-25 18:14:45.905 00:00:10.592 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 12 6556 1 2025-12-25 18:15:46.536 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60416 10 6452 1 2025-12-25 18:16:46.943 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-12-25 18:17:16.393 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:17:16.382 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:17:16.438 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:17:16.407 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:17:16.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:17:47.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43170 10 6452 1 2025-12-25 18:18:47.760 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 10 6452 1 2025-12-25 18:15:21.819 00:05:02.573 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:15:21.821 00:05:02.568 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:19:48.160 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57182 10 6452 1 2025-12-25 18:20:48.561 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-12-25 18:21:48.965 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-12-25 18:22:16.657 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:22:16.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:22:16.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:22:16.720 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:22:16.802 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:22:49.367 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54356 10 6452 1 2025-12-25 18:23:49.735 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 10 6452 1 2025-12-25 18:24:50.149 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59794 10 6452 1 2025-12-25 18:21:21.823 00:05:02.570 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:21:21.826 00:05:02.566 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:25:50.562 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55428 10 6452 1 2025-12-25 18:26:50.961 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-12-25 18:27:16.548 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:27:16.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:27:16.611 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:27:16.605 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:27:16.688 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:27:51.365 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53566 10 6452 1 2025-12-25 18:28:51.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6452 1 2025-12-25 18:29:52.186 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:43894 10 6452 1 2025-12-25 18:30:52.543 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43932 10 6452 1 2025-12-25 18:27:21.830 00:05:02.560 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:27:21.827 00:05:02.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:31:52.903 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33194 10 6452 1 2025-12-25 18:32:16.890 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:32:16.684 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:32:16.571 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:32:16.684 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:32:16.769 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:32:53.269 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51560 10 6452 1 2025-12-25 18:33:53.692 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 10 6452 1 2025-12-25 18:34:54.053 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38628 10 6452 1 2025-12-25 18:35:54.424 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57054 10 6452 1 2025-12-25 18:36:54.788 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-12-25 18:37:16.915 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:33:21.828 00:05:02.567 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:37:16.791 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:37:16.871 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:37:16.735 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:37:16.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:33:21.832 00:05:02.561 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:37:55.190 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-12-25 18:38:55.554 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34766 10 6452 1 2025-12-25 18:39:55.965 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37490 10 6452 1 2025-12-25 18:40:56.321 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-12-25 18:41:56.678 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:57512 12 10375 1 2025-12-25 18:42:16.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:42:17.002 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:42:16.822 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:42:17.001 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:42:17.083 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:42:57.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-12-25 18:39:21.834 00:05:02.562 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:39:21.837 00:05:02.557 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:43:57.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52672 10 6452 1 2025-12-25 18:44:57.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43538 10 6452 1 2025-12-25 18:45:58.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45342 10 6452 1 2025-12-25 18:46:58.767 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49688 10 6452 1 2025-12-25 18:47:17.092 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:47:16.890 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:47:16.900 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:47:17.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:47:17.318 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:47:59.192 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:54146 14 15794 1 2025-12-25 18:48:59.672 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59290 10 6661 1 2025-12-25 18:45:21.838 00:05:02.556 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:45:21.838 00:05:02.560 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:50:00.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58768 12 6765 1 2025-12-25 18:51:00.508 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6661 1 2025-12-25 18:52:00.920 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:55626 12 10787 1 2025-12-25 18:52:17.122 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:52:17.186 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:52:17.190 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:52:17.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:52:17.260 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:53:01.393 00:00:12.064 TCP 1.101.0.1:3000 -> 23.104.0.1:55810 11 6922 1 2025-12-25 18:54:03.498 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6870 1 2025-12-25 18:55:03.902 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6870 1 2025-12-25 18:51:21.849 00:05:02.554 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:51:21.846 00:05:02.560 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 18:56:04.270 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37216 10 6870 1 2025-12-25 18:57:17.401 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 18:57:17.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 18:57:17.230 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 18:57:04.677 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:57594 12 10787 1 2025-12-25 18:57:17.230 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:57:17.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 18:58:05.167 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6870 1 Summary: total flows: 139, total bytes: 443508, total packets: 1033, avg bps: 971, avg pps: 0, avg bpp: 429 Time window: 2025-12-25 17:57:21 - 2025-12-25 18:58:15 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0045s User: 0.0009s Wall: 0.0031s flows/second: 44392.6 Runtime: 0.0032s