Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 15:59:17.069 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33064 10 6452 1 2025-12-02 16:00:17.474 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59022 10 6452 1 2025-12-02 16:01:09.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:01:09.328 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:01:09.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:01:09.600 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:01:09.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:01:17.838 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 10 6452 1 2025-12-02 15:57:11.908 00:05:57.870 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 15:57:11.906 00:05:57.875 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:02:18.223 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44698 10 6452 1 2025-12-02 16:03:18.623 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:51274 12 10375 1 2025-12-02 16:04:19.067 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53928 10 6452 1 2025-12-02 16:05:19.429 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41760 10 6452 1 2025-12-02 16:06:09.632 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:06:09.535 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:06:09.633 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:06:09.559 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:06:09.715 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:06:19.846 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40346 10 6452 1 2025-12-02 16:07:20.263 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38350 10 6452 1 2025-12-02 16:03:11.910 00:05:57.868 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:03:11.908 00:05:57.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:08:20.622 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-12-02 16:09:21.026 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:47778 10 6452 1 2025-12-02 16:10:21.508 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6452 1 2025-12-02 16:11:09.669 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:11:09.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:11:09.533 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:11:09.586 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:11:09.593 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:11:21.919 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42910 10 6452 1 2025-12-02 16:12:22.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53532 10 6452 1 2025-12-02 16:13:22.725 00:00:10.788 TCP 1.101.0.1:3000 -> 23.104.0.1:52658 12 10369 1 2025-12-02 16:09:11.908 00:05:57.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:09:11.911 00:05:57.869 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:14:23.554 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53162 10 6452 1 2025-12-02 16:15:23.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60656 10 6452 1 2025-12-02 16:16:09.740 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:16:09.921 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:16:09.399 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:16:09.659 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:16:10.171 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:16:24.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58692 10 6452 1 2025-12-02 16:17:24.766 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60206 10 6452 1 2025-12-02 16:18:25.176 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42676 10 6452 1 2025-12-02 16:19:25.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52618 10 6452 1 2025-12-02 16:15:11.914 00:05:57.867 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:15:11.911 00:05:57.872 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:20:25.997 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58110 10 6452 1 2025-12-02 16:21:09.898 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:21:09.817 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:21:09.837 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:21:09.815 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:21:09.891 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:21:26.399 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48924 10 6452 1 2025-12-02 16:22:26.801 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44006 10 6452 1 2025-12-02 16:23:27.219 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58594 10 6452 1 2025-12-02 16:24:27.614 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43812 10 6452 1 2025-12-02 16:25:28.018 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36192 10 6452 1 2025-12-02 16:26:10.128 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:21:11.915 00:05:57.868 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:26:09.959 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:26:09.815 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:26:10.044 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:26:09.693 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:21:11.911 00:05:57.874 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:26:28.384 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48440 10 6452 1 2025-12-02 16:27:28.783 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 10 6452 1 2025-12-02 16:28:29.192 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:43166 10 6452 1 2025-12-02 16:29:29.589 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-12-02 16:30:29.995 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6452 1 2025-12-02 16:31:10.071 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:31:09.932 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:31:10.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:31:09.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:31:10.166 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:31:30.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-12-02 16:27:11.916 00:05:57.868 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:27:11.913 00:05:57.874 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:32:30.770 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47190 10 6452 1 2025-12-02 16:33:31.175 00:00:10.866 TCP 1.101.0.1:3000 -> 23.104.0.1:37142 10 6452 1 2025-12-02 16:34:32.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33616 10 6452 1 2025-12-02 16:35:32.508 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47174 10 6452 1 2025-12-02 16:36:10.061 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:36:09.860 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:36:10.147 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:36:10.059 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:36:10.228 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:36:32.911 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6452 1 2025-12-02 16:37:33.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42482 10 6452 1 2025-12-02 16:33:11.918 00:05:57.867 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:33:11.916 00:05:57.872 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:38:33.677 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46926 10 6452 1 2025-12-02 16:39:34.041 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46638 10 6452 1 2025-12-02 16:40:34.446 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55782 10 6452 1 2025-12-02 16:41:10.305 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:41:10.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:41:10.196 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:41:10.224 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:41:09.879 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:41:34.854 00:00:11.285 TCP 1.101.0.1:3000 -> 23.104.0.1:45996 10 6452 1 2025-12-02 16:42:36.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41212 10 6452 1 2025-12-02 16:43:36.583 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55906 10 6452 1 2025-12-02 16:39:11.916 00:05:57.873 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:39:11.919 00:05:57.868 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:44:36.980 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38532 10 6452 1 2025-12-02 16:45:37.341 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-12-02 16:46:10.080 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:46:10.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:46:10.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:46:09.997 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:46:10.131 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:46:37.746 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-12-02 16:47:38.151 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34848 10 6452 1 2025-12-02 16:48:38.560 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57086 10 6452 1 2025-12-02 16:49:38.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40166 10 6452 1 2025-12-02 16:45:11.919 00:05:57.872 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:45:11.923 00:05:57.867 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:50:39.371 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-12-02 16:51:10.317 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:51:10.371 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:51:10.509 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:51:10.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:51:10.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:51:39.769 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:52532 10 6452 1 2025-12-02 16:52:40.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43144 10 6452 1 2025-12-02 16:53:40.548 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-12-02 16:54:40.954 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52016 10 6452 1 2025-12-02 16:55:41.322 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51506 10 6452 1 2025-12-02 16:51:11.925 00:05:57.865 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 16:56:10.790 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 16:56:10.706 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 16:56:10.416 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:56:10.708 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 16:56:10.861 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 16:51:11.924 00:05:57.870 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 16:56:41.721 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-12-02 16:57:42.153 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56602 10 6452 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 919, avg pps: 0, avg bpp: 412 Time window: 2025-12-02 15:57:11 - 2025-12-02 16:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0019s Wall: 0.0019s flows/second: 74297.0 Runtime: 0.0019s