Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 13:58:58.018 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42158 10 6452 1 2025-12-04 13:59:58.426 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57038 10 6452 1 2025-12-04 14:00:58.828 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55620 10 6452 1 2025-12-04 14:02:04.492 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:02:04.589 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:02:04.769 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:02:04.729 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:02:04.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:01:59.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-12-04 13:58:10.681 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 13:58:10.684 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:02:59.595 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43842 10 6452 1 2025-12-04 14:04:00.002 00:00:10.936 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-12-04 14:05:00.972 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-12-04 14:06:01.378 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50298 10 6452 1 2025-12-04 14:07:04.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:07:04.917 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:07:04.959 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:07:04.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:07:04.865 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:07:01.781 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-12-04 14:04:10.681 00:05:02.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:04:10.683 00:05:02.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:08:02.191 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-12-04 14:09:02.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45450 10 6452 1 2025-12-04 14:10:02.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-12-04 14:11:03.399 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-12-04 14:12:04.895 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:12:04.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:12:04.813 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:12:05.278 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:12:05.098 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:12:03.767 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49712 10 6452 1 2025-12-04 14:13:04.171 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40900 10 6452 1 2025-12-04 14:10:10.688 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:10:10.688 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:14:04.576 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:43822 11 6504 1 2025-12-04 14:15:05.062 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56752 10 6452 1 2025-12-04 14:16:05.466 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 10 6452 1 2025-12-04 14:17:05.346 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:17:05.272 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:17:04.994 00:00:00.061 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:17:05.341 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:17:05.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:17:05.869 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55618 10 6452 1 2025-12-04 14:18:06.286 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 12 10369 1 2025-12-04 14:19:06.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-12-04 14:16:10.689 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:16:10.691 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:20:07.191 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53476 10 6452 1 2025-12-04 14:21:07.607 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54762 10 6452 1 2025-12-04 14:22:05.208 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:22:05.131 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:22:05.136 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:22:05.158 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:22:05.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:22:08.010 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37856 10 6452 1 2025-12-04 14:23:08.415 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40484 10 6452 1 2025-12-04 14:24:08.818 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53632 10 6452 1 2025-12-04 14:25:09.223 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38000 10 6452 1 2025-12-04 14:22:10.693 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:22:10.694 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:26:09.628 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44606 10 6452 1 2025-12-04 14:27:05.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:27:04.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:27:05.290 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:27:05.287 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:27:05.370 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:27:10.037 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39444 10 6452 1 2025-12-04 14:28:10.440 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:49792 12 10375 1 2025-12-04 14:29:10.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-12-04 14:30:11.317 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-12-04 14:31:11.694 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55016 10 6452 1 2025-12-04 14:32:05.497 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:32:05.494 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:32:05.487 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:32:05.340 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:32:05.415 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:28:10.696 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:28:10.693 00:05:02.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:32:12.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-12-04 14:33:12.510 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-12-04 14:34:12.910 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47068 10 6452 1 2025-12-04 14:35:13.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-12-04 14:36:13.679 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44214 10 6452 1 2025-12-04 14:37:05.785 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:37:05.361 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:37:05.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:37:05.510 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:37:05.702 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:37:14.104 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 10 6452 1 2025-12-04 14:34:10.694 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:34:10.697 00:05:02.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:38:14.500 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35008 10 6452 1 2025-12-04 14:39:14.904 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-12-04 14:40:15.317 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6452 1 2025-12-04 14:41:15.718 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44044 10 6452 1 2025-12-04 14:42:05.540 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:42:05.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:42:05.648 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:42:05.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:42:05.729 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:42:16.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-12-04 14:43:16.552 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-12-04 14:40:10.699 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:40:10.696 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:44:16.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-12-04 14:45:17.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37550 10 6452 1 2025-12-04 14:46:17.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35014 10 6452 1 2025-12-04 14:47:05.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:47:05.651 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:47:05.593 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:47:05.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:47:05.530 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:47:18.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60930 10 6452 1 2025-12-04 14:48:18.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-12-04 14:49:18.941 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-12-04 14:46:10.700 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:46:10.696 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:50:19.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50658 10 6452 1 2025-12-04 14:51:19.758 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:50430 10 6452 1 2025-12-04 14:52:05.879 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:52:05.996 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:52:05.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:52:06.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:52:06.163 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:52:20.134 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60496 10 6452 1 2025-12-04 14:53:20.539 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-12-04 14:54:20.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-12-04 14:55:21.361 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-12-04 14:52:10.702 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 14:52:10.699 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 14:56:21.737 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54302 10 6452 1 2025-12-04 14:57:06.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:57:05.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 14:57:05.905 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 14:57:05.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:57:05.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:57:22.146 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36514 10 6452 1 2025-12-04 14:58:22.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47800 10 6452 1 Summary: total flows: 140, total bytes: 424892, total packets: 1025, avg bps: 938, avg pps: 0, avg bpp: 414 Time window: 2025-12-04 13:58:10 - 2025-12-04 14:58:32 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0050s User: 0.0013s Wall: 0.0032s flows/second: 44163.9 Runtime: 0.0032s