Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 20:59:25.369 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39008 10 6452 1 2025-12-02 21:00:25.732 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6452 1 2025-12-02 20:57:09.856 00:05:02.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:01:15.239 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:01:15.450 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:01:15.298 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:01:15.155 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:01:15.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 20:57:09.857 00:05:02.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:01:26.143 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 10 6452 1 2025-12-02 21:02:26.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50868 10 6452 1 2025-12-02 21:03:26.959 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:49102 12 10375 1 2025-12-02 21:04:27.415 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-12-02 21:05:27.821 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36512 10 6452 1 2025-12-02 21:06:15.640 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:06:15.296 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:06:15.544 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:06:15.469 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:06:15.638 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:06:28.231 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:49874 10 6452 1 2025-12-02 21:03:09.858 00:05:02.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:03:09.855 00:05:02.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:07:28.848 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43364 10 6452 1 2025-12-02 21:08:29.274 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:32956 10 6452 1 2025-12-02 21:09:29.681 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48040 10 6452 1 2025-12-02 21:10:30.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6452 1 2025-12-02 21:11:15.632 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:11:15.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:11:15.647 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:11:15.550 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:11:15.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:11:30.515 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46940 10 6452 1 2025-12-02 21:12:30.930 00:00:10.998 TCP 1.101.0.1:3000 -> 23.104.0.1:55432 12 10375 1 2025-12-02 21:09:09.858 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:09:09.856 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:13:31.965 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-12-02 21:14:32.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44642 10 6452 1 2025-12-02 21:15:32.769 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50918 10 6452 1 2025-12-02 21:16:15.786 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:16:15.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:16:15.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:16:15.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:16:15.939 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:16:33.189 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40696 10 6452 1 2025-12-02 21:17:33.553 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-12-02 21:18:33.916 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39844 10 6452 1 2025-12-02 21:15:09.858 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:15:09.861 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:19:34.318 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-12-02 21:20:34.680 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43810 10 6452 1 2025-12-02 21:21:15.935 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:21:15.911 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:21:15.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:21:15.853 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:21:15.959 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:21:35.112 00:00:10.770 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-12-02 21:22:35.922 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45638 10 6452 1 2025-12-02 21:23:36.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51054 10 6452 1 2025-12-02 21:24:36.750 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-12-02 21:21:09.862 00:05:02.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:21:09.860 00:05:02.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:25:37.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47812 10 6452 1 2025-12-02 21:26:15.903 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:26:15.952 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:26:15.906 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:26:15.988 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:26:16.087 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:26:37.588 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-12-02 21:27:37.955 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45128 10 6452 1 2025-12-02 21:28:38.325 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 10 6452 1 2025-12-02 21:29:38.729 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58042 10 6452 1 2025-12-02 21:30:39.144 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53312 10 6452 1 2025-12-02 21:27:09.864 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:31:15.975 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:31:15.885 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:27:09.867 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:31:16.057 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:31:16.138 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:31:16.099 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:31:39.541 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44798 10 6452 1 2025-12-02 21:32:39.944 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-12-02 21:33:40.368 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 2025-12-02 21:34:40.781 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6452 1 2025-12-02 21:35:41.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44504 10 6452 1 2025-12-02 21:36:16.293 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:36:16.270 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:36:16.078 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:36:16.206 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:36:16.129 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:36:41.593 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55934 10 6452 1 2025-12-02 21:33:09.865 00:05:02.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:33:09.867 00:05:02.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:37:41.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46564 10 6452 1 2025-12-02 21:38:42.361 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46764 10 6452 1 2025-12-02 21:39:42.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47204 10 6452 1 2025-12-02 21:40:43.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40668 10 6452 1 2025-12-02 21:41:16.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:41:16.447 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:41:16.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:41:16.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:41:16.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:41:43.547 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-12-02 21:42:43.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-12-02 21:39:09.870 00:05:02.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:39:09.873 00:05:02.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:43:44.359 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38282 10 6452 1 2025-12-02 21:44:44.768 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40012 10 6452 1 2025-12-02 21:45:45.172 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 10 6452 1 2025-12-02 21:46:16.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:46:16.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:46:16.455 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:46:16.322 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:46:16.538 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:46:45.574 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43598 10 6452 1 2025-12-02 21:47:45.970 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44074 10 6452 1 2025-12-02 21:48:46.333 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36902 10 6452 1 2025-12-02 21:45:09.874 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:45:09.872 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:49:46.736 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34682 10 6452 1 2025-12-02 21:50:47.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-12-02 21:51:16.519 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:51:16.439 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:51:16.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:51:16.438 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:51:16.501 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:51:47.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-12-02 21:52:47.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38680 10 6452 1 2025-12-02 21:53:48.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36280 10 6452 1 2025-12-02 21:54:48.758 00:00:10.479 TCP 1.101.0.1:3000 -> 23.104.0.1:33082 10 6452 1 2025-12-02 21:51:09.873 00:05:02.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-02 21:51:09.872 00:05:02.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-02 21:55:49.284 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53914 10 6452 1 2025-12-02 21:56:16.571 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-02 21:56:16.618 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-02 21:56:16.675 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:56:16.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-02 21:56:16.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-02 21:56:49.691 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52210 10 6452 1 2025-12-02 21:57:50.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60788 10 6452 1 Summary: total flows: 139, total bytes: 418394, total packets: 1014, avg bps: 916, avg pps: 0, avg bpp: 412 Time window: 2025-12-02 20:57:09 - 2025-12-02 21:58:00 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0025s Wall: 0.0026s flows/second: 54400.3 Runtime: 0.0026s