Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 08:58:42.719 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 12 10369 1 2025-12-05 08:59:43.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-12-05 09:00:43.564 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-12-05 09:01:43.921 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35416 10 6452 1 2025-12-05 08:58:11.133 00:05:02.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 08:58:11.130 00:05:02.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:02:27.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:02:27.830 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:02:27.800 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:02:27.615 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:02:27.699 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:02:44.342 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-12-05 09:03:44.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-12-05 09:04:45.153 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52480 10 6452 1 2025-12-05 09:05:45.557 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-12-05 09:06:45.959 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39528 10 6452 1 2025-12-05 09:07:27.763 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:07:27.853 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:07:27.908 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:07:27.768 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:07:27.851 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:07:46.374 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48982 10 6452 1 2025-12-05 09:04:11.130 00:05:02.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:04:11.134 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:08:46.778 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6452 1 2025-12-05 09:09:47.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37318 10 6452 1 2025-12-05 09:10:47.588 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-12-05 09:11:47.996 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54996 10 6452 1 2025-12-05 09:12:27.836 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:12:27.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:12:27.678 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:12:27.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:12:27.754 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:12:48.401 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41030 10 6452 1 2025-12-05 09:13:48.761 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:59116 12 10369 1 2025-12-05 09:10:11.132 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:10:11.136 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:14:49.253 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59070 10 6452 1 2025-12-05 09:15:49.659 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:35684 10 6452 1 2025-12-05 09:16:50.142 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-12-05 09:17:27.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:17:27.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:17:27.851 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:17:27.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:17:27.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:17:50.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49228 10 6452 1 2025-12-05 09:18:50.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42274 10 6452 1 2025-12-05 09:19:51.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-12-05 09:16:11.137 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:16:11.134 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:20:51.775 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51328 10 6452 1 2025-12-05 09:21:52.186 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-12-05 09:22:28.908 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:22:28.972 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:22:28.968 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:22:28.683 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:22:28.826 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:22:52.591 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-12-05 09:23:52.993 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-12-05 09:24:53.364 00:00:10.694 TCP 1.101.0.1:3000 -> 23.104.0.1:34730 10 6452 1 2025-12-05 09:25:54.107 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38362 10 6452 1 2025-12-05 09:22:11.140 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:22:11.137 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:26:54.515 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36286 10 6452 1 2025-12-05 09:27:27.992 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:27:28.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:27:27.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:27:28.003 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:27:28.086 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:27:54.881 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-12-05 09:28:55.246 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:36728 10 6452 1 2025-12-05 09:29:56.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-12-05 09:30:56.504 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-12-05 09:31:56.917 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41282 10 6452 1 2025-12-05 09:28:11.141 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:28:11.139 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:32:28.161 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:32:28.222 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:32:28.248 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:32:28.290 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:32:28.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:32:57.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45048 10 6452 1 2025-12-05 09:33:57.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58484 10 6452 1 2025-12-05 09:34:58.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59952 10 6452 1 2025-12-05 09:35:58.538 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 10 6452 1 2025-12-05 09:36:58.938 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39282 10 6452 1 2025-12-05 09:37:28.114 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:37:28.315 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:37:28.310 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:37:27.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:37:28.033 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:34:11.140 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:37:59.314 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52698 10 6452 1 2025-12-05 09:34:11.142 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:38:59.717 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 10 6452 1 2025-12-05 09:40:00.135 00:00:10.711 TCP 1.101.0.1:3000 -> 23.104.0.1:57898 10 6452 1 2025-12-05 09:41:00.880 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-12-05 09:42:01.241 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59554 10 6452 1 2025-12-05 09:42:28.647 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:42:28.728 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:42:28.853 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:42:28.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:42:28.564 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:43:01.645 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57700 10 6452 1 2025-12-05 09:40:11.143 00:05:02.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:40:11.145 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:44:02.055 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44882 10 6452 1 2025-12-05 09:45:02.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33694 10 6452 1 2025-12-05 09:46:02.822 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37784 10 6452 1 2025-12-05 09:47:03.228 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-12-05 09:47:28.543 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:47:28.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:47:28.232 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:47:28.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:47:28.449 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:48:03.637 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35578 10 6452 1 2025-12-05 09:49:04.062 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-12-05 09:46:11.146 00:05:02.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:50:04.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51526 10 6452 1 2025-12-05 09:46:11.144 00:05:02.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:51:04.830 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-12-05 09:52:05.266 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50598 10 6452 1 2025-12-05 09:52:28.663 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:52:28.708 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:52:28.397 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:52:28.436 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:52:28.519 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:53:05.669 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 12 10375 1 2025-12-05 09:54:06.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58326 10 6452 1 2025-12-05 09:55:06.553 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-12-05 09:52:11.151 00:05:02.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 09:52:11.149 00:05:02.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 09:56:06.965 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45516 10 6452 1 2025-12-05 09:57:07.335 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52590 10 6452 1 2025-12-05 09:57:28.768 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 09:57:28.864 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 09:57:28.711 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:57:28.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 09:57:28.763 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 09:58:07.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53910 10 6452 1 Summary: total flows: 140, total bytes: 428757, total packets: 1026, avg bps: 950, avg pps: 0, avg bpp: 417 Time window: 2025-12-05 08:58:11 - 2025-12-05 09:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0021s User: 0.0032s Wall: 0.0027s flows/second: 52649.7 Runtime: 0.0027s