Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 15:58:47.936 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 10 6452 1 2025-12-04 15:59:48.374 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34676 10 6452 1 2025-12-04 16:00:48.739 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60706 10 6452 1 2025-12-04 16:01:49.153 00:00:10.810 TCP 1.101.0.1:3000 -> 23.104.0.1:41014 10 6452 1 2025-12-04 16:02:07.315 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:02:07.144 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:02:07.074 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:02:06.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:02:07.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 15:58:10.726 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 15:58:10.725 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:02:50.004 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-12-04 16:03:50.402 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36314 10 6452 1 2025-12-04 16:04:50.799 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33722 10 6452 1 2025-12-04 16:05:51.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-12-04 16:06:51.605 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56244 10 6452 1 2025-12-04 16:07:07.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:07:07.504 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:07:07.404 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:07:07.247 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:07:07.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:07:51.969 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-12-04 16:04:10.727 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:04:10.729 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:08:52.370 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55874 10 6452 1 2025-12-04 16:09:52.772 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-12-04 16:10:53.134 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-12-04 16:11:53.533 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 10 6452 1 2025-12-04 16:12:07.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:12:07.632 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:12:07.628 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:12:07.352 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:12:07.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:12:53.899 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41362 10 6452 1 2025-12-04 16:13:54.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36300 10 6452 1 2025-12-04 16:10:10.729 00:05:02.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:10:10.727 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:14:54.725 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-12-04 16:15:55.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-12-04 16:17:07.389 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:17:07.220 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:16:55.560 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-12-04 16:17:07.307 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:17:07.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:17:07.389 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:17:55.927 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 12 10369 1 2025-12-04 16:18:56.384 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:50482 11 6504 1 2025-12-04 16:19:56.837 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:46670 10 6452 1 2025-12-04 16:16:10.732 00:05:02.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:16:10.734 00:05:02.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:20:57.210 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6452 1 2025-12-04 16:22:07.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:22:07.616 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:22:07.781 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:22:07.549 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:22:07.632 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:21:57.569 00:00:20.183 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 10 6452 1 2025-12-04 16:23:07.806 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-12-04 16:24:08.208 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59318 10 6452 1 2025-12-04 16:25:08.612 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56556 12 6556 1 2025-12-04 16:22:10.734 00:05:02.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:22:10.736 00:05:02.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:26:09.010 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-12-04 16:27:07.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:27:07.547 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:27:07.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:27:07.700 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:27:07.782 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:27:09.421 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-12-04 16:28:09.830 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6452 1 2025-12-04 16:29:10.235 00:00:10.751 TCP 1.101.0.1:3000 -> 23.104.0.1:48648 10 6452 1 2025-12-04 16:30:11.025 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-12-04 16:31:11.423 00:00:11.443 TCP 1.101.0.1:3000 -> 23.104.0.1:49024 10 6452 1 2025-12-04 16:32:08.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:28:10.736 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:32:08.143 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:32:08.268 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:32:07.907 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:32:08.143 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:28:10.739 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:32:12.903 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-12-04 16:33:13.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58868 10 6452 1 2025-12-04 16:34:13.723 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41608 10 6452 1 2025-12-04 16:35:14.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36318 10 6452 1 2025-12-04 16:36:14.511 00:00:11.908 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-12-04 16:37:08.117 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:37:07.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:37:07.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:37:07.998 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:37:08.081 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:37:16.453 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37206 10 6452 1 2025-12-04 16:34:10.741 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:34:10.738 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:38:16.858 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35560 10 6452 1 2025-12-04 16:39:17.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38608 10 6452 1 2025-12-04 16:40:17.638 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-12-04 16:41:18.061 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-12-04 16:42:08.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:42:08.011 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:42:07.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:42:07.869 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:42:07.964 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:42:18.427 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-12-04 16:43:18.831 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-12-04 16:40:10.742 00:05:02.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:40:10.744 00:05:02.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:44:19.255 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53750 10 6452 1 2025-12-04 16:45:19.661 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60684 10 6452 1 2025-12-04 16:46:20.028 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36010 10 6452 1 2025-12-04 16:47:08.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:47:07.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:47:07.886 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:47:08.058 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:47:07.968 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:47:20.427 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 6452 1 2025-12-04 16:48:20.869 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 12 10375 1 2025-12-04 16:49:21.351 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38006 10 6452 1 2025-12-04 16:46:10.741 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:46:10.744 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:50:21.724 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-12-04 16:51:22.110 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:46344 10 6452 1 2025-12-04 16:52:08.788 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:52:08.788 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:52:08.564 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:52:08.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:52:08.719 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:52:22.558 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-12-04 16:53:22.916 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38520 10 6452 1 2025-12-04 16:54:23.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-12-04 16:55:23.680 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48666 10 6452 1 2025-12-04 16:52:10.744 00:05:02.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-04 16:52:10.743 00:05:02.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-04 16:56:24.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-12-04 16:57:08.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-04 16:57:08.291 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-04 16:57:08.313 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:57:08.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-04 16:57:08.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-04 16:57:24.509 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-12-04 16:58:24.869 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:56866 12 10369 1 Summary: total flows: 140, total bytes: 428913, total packets: 1029, avg bps: 946, avg pps: 0, avg bpp: 416 Time window: 2025-12-04 15:58:10 - 2025-12-04 16:58:35 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0027s User: 0.0027s Wall: 0.0021s flows/second: 65793.0 Runtime: 0.0021s