Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 14:59:22.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-12-04 15:00:23.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38986 10 6452 1 2025-12-04 15:01:23.716 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56182 10 6452 1 2025-12-04 15:02:06.283 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 14:58:10.701 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:02:06.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:02:06.136 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:02:05.956 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:02:06.200 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 14:58:10.703 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:02:24.127 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33556 10 6452 1 2025-12-04 15:03:24.532 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48400 10 6452 1 2025-12-04 15:04:24.937 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54492 10 6452 1 2025-12-04 15:05:25.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46858 10 6452 1 2025-12-04 15:06:25.753 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:53656 10 6452 1 2025-12-04 15:07:06.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:07:05.909 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:07:05.808 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:07:05.828 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:07:06.078 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:07:26.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32936 10 6452 1 2025-12-04 15:04:10.704 00:05:02.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:04:10.701 00:05:02.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:08:26.549 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60380 10 6452 1 2025-12-04 15:09:26.919 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59732 10 6452 1 2025-12-04 15:10:27.320 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53610 10 6452 1 2025-12-04 15:11:27.716 00:00:10.481 TCP 1.101.0.1:3000 -> 23.104.0.1:48694 10 6452 1 2025-12-04 15:12:06.552 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:12:06.262 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:12:06.259 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:12:05.962 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:12:06.469 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:12:28.237 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-12-04 15:13:28.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-12-04 15:10:10.704 00:05:02.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:10:10.702 00:05:02.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:14:29.035 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50970 10 6452 1 2025-12-04 15:15:29.403 00:00:11.061 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-12-04 15:16:30.502 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54048 10 6452 1 2025-12-04 15:17:06.273 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:17:06.299 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:17:06.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:17:06.423 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:17:06.505 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:17:30.910 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-12-04 15:18:31.312 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59852 10 6452 1 2025-12-04 15:19:31.713 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60700 10 6452 1 2025-12-04 15:16:10.707 00:05:02.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:16:10.710 00:05:02.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:20:32.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35844 10 6452 1 2025-12-04 15:21:32.524 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55598 10 6452 1 2025-12-04 15:22:06.433 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:22:06.284 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:22:06.191 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:22:06.210 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:22:06.350 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:22:32.932 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:45922 10 6452 1 2025-12-04 15:23:33.319 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-12-04 15:24:33.727 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57192 10 6452 1 2025-12-04 15:25:34.130 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-12-04 15:22:10.713 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:22:10.710 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:26:34.495 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40994 10 6452 1 2025-12-04 15:27:06.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:27:06.528 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:27:06.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:27:06.372 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:27:06.455 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:27:34.854 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39146 10 6452 1 2025-12-04 15:28:35.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-12-04 15:29:35.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59640 10 6452 1 2025-12-04 15:30:36.113 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54646 10 6452 1 2025-12-04 15:31:36.532 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59650 10 6452 1 2025-12-04 15:32:06.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:28:10.712 00:05:02.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:32:06.743 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:32:06.396 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:32:06.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:32:06.747 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:28:10.714 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:32:36.935 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:52916 10 6452 1 2025-12-04 15:33:37.364 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38754 10 6452 1 2025-12-04 15:34:37.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-12-04 15:35:38.202 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-12-04 15:36:38.600 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42358 10 6452 1 2025-12-04 15:37:06.735 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:37:06.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:37:06.757 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:37:06.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:37:06.654 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:37:38.967 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-12-04 15:34:10.716 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:34:10.714 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:38:39.374 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-12-04 15:39:39.776 00:00:10.638 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-12-04 15:40:40.451 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55286 10 6452 1 2025-12-04 15:41:40.853 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46270 10 6452 1 2025-12-04 15:42:06.737 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:42:06.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:42:06.580 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:42:06.763 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:42:06.656 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:42:41.274 00:00:10.491 TCP 1.101.0.1:3000 -> 23.104.0.1:46404 10 6452 1 2025-12-04 15:43:41.806 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:46218 12 10375 1 2025-12-04 15:40:10.715 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:40:10.718 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:44:42.257 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-12-04 15:45:42.664 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54822 10 6452 1 2025-12-04 15:46:43.077 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40422 10 6452 1 2025-12-04 15:47:06.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:47:06.746 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:47:06.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:47:06.685 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:47:06.884 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:47:43.482 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42696 10 6452 1 2025-12-04 15:48:43.880 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41018 10 6452 1 2025-12-04 15:49:44.289 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-12-04 15:46:10.723 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:46:10.720 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:50:44.692 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39202 10 6452 1 2025-12-04 15:51:45.107 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34872 10 6452 1 2025-12-04 15:52:06.827 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:52:06.745 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:52:06.854 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:52:06.745 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:52:06.877 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:52:45.527 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60962 10 6452 1 2025-12-04 15:53:45.894 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-12-04 15:54:46.305 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:60084 11 6504 1 2025-12-04 15:55:46.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54854 10 6452 1 2025-12-04 15:52:10.722 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 15:52:10.724 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:56:47.156 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42038 10 6452 1 2025-12-04 15:57:07.053 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 15:57:07.051 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 15:57:06.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:57:06.959 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:57:07.043 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 15:57:47.564 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53238 10 6452 1 Summary: total flows: 139, total bytes: 414523, total packets: 1013, avg bps: 924, avg pps: 0, avg bpp: 409 Time window: 2025-12-04 14:58:10 - 2025-12-04 15:57:57 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0029s Wall: 0.0024s flows/second: 57987.7 Runtime: 0.0024s