Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-25 18:59:05.532 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55072 10 6870 1 2025-12-25 19:00:05.931 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6870 1 2025-12-25 19:01:06.355 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38996 10 6870 1 2025-12-25 18:57:21.850 00:05:02.554 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 18:57:21.848 00:05:02.559 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:02:17.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:02:17.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:02:17.311 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:02:06.717 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6870 1 2025-12-25 19:02:17.312 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:02:17.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:03:07.108 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6870 1 2025-12-25 19:04:07.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45840 10 6870 1 2025-12-25 19:05:07.925 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6870 1 2025-12-25 19:06:08.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37206 10 6870 1 2025-12-25 19:07:17.403 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:07:17.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:07:17.395 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:07:17.328 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:07:08.761 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55898 10 6870 1 2025-12-25 19:07:17.412 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:03:21.848 00:05:02.561 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:03:21.850 00:05:02.556 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:08:09.187 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36702 10 6870 1 2025-12-25 19:09:09.590 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58506 10 6870 1 2025-12-25 19:10:09.946 00:00:11.090 TCP 1.101.0.1:3000 -> 23.104.0.1:42604 10 6870 1 2025-12-25 19:11:11.101 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44188 10 6870 1 2025-12-25 19:12:17.650 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:12:17.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:12:17.581 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:12:17.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:12:17.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:12:11.503 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44372 10 6870 1 2025-12-25 19:09:21.853 00:05:02.555 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:13:11.864 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46556 10 6870 1 2025-12-25 19:09:21.850 00:05:02.561 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:14:12.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44598 10 6870 1 2025-12-25 19:15:12.685 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44132 10 6870 1 2025-12-25 19:16:13.096 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38456 10 6870 1 2025-12-25 19:17:17.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:17:17.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:17:17.510 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:17:17.545 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:17:17.565 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:17:13.500 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45972 10 6870 1 2025-12-25 19:18:13.911 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56946 10 6870 1 2025-12-25 19:15:21.855 00:05:02.555 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:19:14.281 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39460 10 6870 1 2025-12-25 19:15:21.853 00:05:02.559 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:20:14.699 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6870 1 2025-12-25 19:21:15.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6870 1 2025-12-25 19:22:18.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:22:18.213 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:22:18.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:22:18.273 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:22:18.247 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:22:15.521 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:42440 12 11002 1 2025-12-25 19:23:15.996 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52770 10 7079 1 2025-12-25 19:24:16.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57556 10 7079 1 2025-12-25 19:21:21.855 00:05:02.559 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:21:21.857 00:05:02.554 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:25:16.805 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54890 10 7079 1 2025-12-25 19:26:17.212 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51128 10 7079 1 2025-12-25 19:27:17.873 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:27:17.786 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:27:17.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:27:17.427 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:27:17.791 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:27:17.617 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56522 10 7079 1 2025-12-25 19:28:18.026 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34666 10 7079 1 2025-12-25 19:29:18.390 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34820 10 7079 1 2025-12-25 19:30:18.795 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34072 10 7079 1 2025-12-25 19:27:21.858 00:05:02.555 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:27:21.856 00:05:02.560 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:31:19.205 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58102 10 7079 1 2025-12-25 19:32:18.157 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:32:18.059 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:32:17.932 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:32:17.848 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:32:18.075 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:32:19.564 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38804 10 7079 1 2025-12-25 19:33:19.927 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:33408 10 7079 1 2025-12-25 19:34:20.358 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49192 10 7079 1 2025-12-25 19:35:20.762 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:46478 10 7079 1 2025-12-25 19:36:21.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36682 10 7079 1 2025-12-25 19:37:18.064 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:37:17.977 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:37:17.988 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:37:17.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:37:17.980 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:33:21.856 00:05:02.567 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:33:21.858 00:05:02.563 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:37:21.597 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 7079 1 2025-12-25 19:38:22.005 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 7079 1 2025-12-25 19:39:22.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55706 10 7079 1 2025-12-25 19:40:22.764 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:59574 10 7079 1 2025-12-25 19:41:23.136 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 11 7131 1 2025-12-25 19:42:17.992 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:42:17.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:42:17.905 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:42:18.059 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:42:17.909 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:42:23.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42082 10 7079 1 2025-12-25 19:39:21.859 00:05:02.560 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:39:21.857 00:05:02.565 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:43:23.988 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 7079 1 2025-12-25 19:44:24.392 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36756 10 7079 1 2025-12-25 19:45:24.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48066 10 7079 1 2025-12-25 19:46:25.206 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49526 10 7079 1 2025-12-25 19:47:18.544 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:47:18.288 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:47:18.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:47:18.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:47:18.460 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:47:25.608 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39650 10 7079 1 2025-12-25 19:48:26.026 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 10 7079 1 2025-12-25 19:45:21.858 00:05:02.565 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:45:21.861 00:05:02.559 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:49:26.431 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60030 10 7079 1 2025-12-25 19:50:26.839 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 7079 1 2025-12-25 19:51:27.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50256 10 7079 1 2025-12-25 19:52:18.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:52:18.269 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:52:18.333 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:52:17.929 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:52:18.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:52:27.630 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51730 10 7079 1 2025-12-25 19:53:28.000 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 7079 1 2025-12-25 19:54:28.398 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47376 10 7079 1 2025-12-25 19:51:21.859 00:05:02.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-25 19:51:21.862 00:05:02.560 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-25 19:55:28.814 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51498 10 7079 1 2025-12-25 19:56:29.211 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51800 10 7079 1 2025-12-25 19:57:18.446 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-25 19:57:18.599 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-25 19:57:18.110 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:57:18.364 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-25 19:57:18.467 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-25 19:57:29.571 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55514 10 7079 1 2025-12-25 19:58:29.933 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 10 7079 1 Summary: total flows: 140, total bytes: 453788, total packets: 1023, avg bps: 986, avg pps: 0, avg bpp: 443 Time window: 2025-12-25 18:57:21 - 2025-12-25 19:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0033s User: 0.0022s Wall: 0.0022s flows/second: 64662.8 Runtime: 0.0022s