Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-26 18:59:22.854 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53946 10 6452 1 2025-12-26 19:00:23.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-12-26 18:57:22.344 00:05:02.626 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 18:57:22.346 00:05:02.622 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:01:23.688 00:00:12.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-12-26 19:02:26.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42538 10 6452 1 2025-12-26 19:02:46.290 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:02:46.140 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:02:45.957 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:02:46.036 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:02:46.119 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:03:26.514 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51428 10 6452 1 2025-12-26 19:04:26.877 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53908 10 6452 1 2025-12-26 19:05:27.281 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52956 10 6452 1 2025-12-26 19:06:27.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45640 10 6452 1 2025-12-26 19:03:22.346 00:05:02.627 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:03:22.349 00:05:02.622 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:07:28.119 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34372 10 6452 1 2025-12-26 19:07:46.421 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:07:46.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:07:46.290 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:07:46.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:07:46.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:08:28.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-12-26 19:09:28.934 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55130 10 6452 1 2025-12-26 19:10:29.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6452 1 2025-12-26 19:11:29.761 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-12-26 19:12:30.222 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6452 1 2025-12-26 19:12:46.523 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:12:46.869 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:12:46.733 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:12:46.915 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:12:46.998 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:09:22.349 00:05:02.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:09:22.347 00:05:02.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:13:30.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-12-26 19:14:30.995 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-12-26 19:15:31.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6452 1 2025-12-26 19:16:31.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-12-26 19:17:32.200 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-12-26 19:17:46.570 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:17:46.493 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:17:46.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:17:46.569 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:17:46.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:18:32.607 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-12-26 19:15:22.347 00:05:02.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:15:22.351 00:05:02.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:19:33.046 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37312 10 6452 1 2025-12-26 19:20:33.446 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52692 10 6452 1 2025-12-26 19:21:33.849 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53124 10 6452 1 2025-12-26 19:22:34.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-12-26 19:22:46.627 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:22:46.778 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:22:46.560 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:22:46.718 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:22:46.802 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:23:34.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-12-26 19:24:35.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52652 10 6452 1 2025-12-26 19:21:22.348 00:05:02.631 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:21:22.351 00:05:02.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:25:35.530 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37754 10 6452 1 2025-12-26 19:26:35.892 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47772 12 6556 1 2025-12-26 19:27:46.753 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:27:46.760 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:27:46.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:27:46.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:27:36.308 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51672 10 6452 1 2025-12-26 19:27:46.901 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:28:36.673 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53036 10 6452 1 2025-12-26 19:29:37.042 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51290 10 6452 1 2025-12-26 19:30:37.443 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41254 10 6452 1 2025-12-26 19:27:22.350 00:05:02.631 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:27:22.353 00:05:02.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:31:37.857 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59472 10 6452 1 2025-12-26 19:32:46.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:32:46.682 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:32:46.777 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:32:46.735 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:32:38.268 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-12-26 19:32:46.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:33:38.628 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-12-26 19:34:39.031 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 11 6504 1 2025-12-26 19:35:39.488 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34144 10 6452 1 2025-12-26 19:36:39.891 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51354 12 6556 1 2025-12-26 19:33:22.351 00:05:02.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:33:22.354 00:05:02.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:37:47.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:37:47.159 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:37:46.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:37:47.211 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:37:47.205 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:37:40.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38350 10 6452 1 2025-12-26 19:38:40.719 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39876 10 6452 1 2025-12-26 19:39:41.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-12-26 19:40:41.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53840 10 6452 1 2025-12-26 19:41:41.913 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:39188 12 10375 1 2025-12-26 19:42:46.877 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:42:46.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:42:46.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:42:47.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:42:47.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:42:42.403 00:00:10.576 TCP 1.101.0.1:3000 -> 23.104.0.1:48736 10 6452 1 2025-12-26 19:39:22.357 00:05:02.626 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:39:22.359 00:05:02.620 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:43:43.024 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-12-26 19:44:43.422 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41498 10 6452 1 2025-12-26 19:45:43.785 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47406 10 6452 1 2025-12-26 19:46:44.188 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40792 10 6452 1 2025-12-26 19:47:47.138 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:47:47.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:47:46.772 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:47:47.144 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:47:47.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:47:44.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54774 10 6452 1 2025-12-26 19:48:44.958 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49282 10 6452 1 2025-12-26 19:45:22.359 00:05:02.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:45:22.361 00:05:02.621 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:49:45.365 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38314 10 6452 1 2025-12-26 19:50:45.726 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-12-26 19:51:46.135 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-12-26 19:52:47.360 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:52:47.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:52:47.285 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:52:47.138 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:52:47.277 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:52:46.495 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 2025-12-26 19:53:46.903 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:47556 10 6452 1 2025-12-26 19:54:47.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-12-26 19:51:22.360 00:05:02.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-26 19:51:22.362 00:05:02.620 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-26 19:55:47.916 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47680 10 6452 1 2025-12-26 19:56:48.281 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34042 10 6452 1 2025-12-26 19:57:47.332 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-26 19:57:47.248 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-26 19:57:47.415 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-26 19:57:47.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:57:47.249 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-26 19:57:48.687 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44864 10 6452 1 Summary: total flows: 139, total bytes: 414731, total packets: 1017, avg bps: 912, avg pps: 0, avg bpp: 407 Time window: 2025-12-26 18:57:22 - 2025-12-26 19:57:59 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0010s Wall: 0.0025s flows/second: 55006.0 Runtime: 0.0025s