Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-03 18:59:21.335 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-12-03 19:00:21.734 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35318 10 6452 1 2025-12-03 18:57:10.289 00:05:02.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 18:57:10.286 00:05:02.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:01:22.147 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43030 10 6452 1 2025-12-03 19:01:41.921 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:01:41.734 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:01:41.849 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:01:41.686 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:01:41.933 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:02:22.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39580 10 6452 1 2025-12-03 19:03:22.908 00:00:11.018 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-12-03 19:04:23.962 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-12-03 19:05:24.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48234 10 6452 1 2025-12-03 19:06:24.769 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 10 6452 1 2025-12-03 19:06:42.087 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:06:41.871 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:06:41.927 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:06:42.005 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:06:41.947 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:03:10.290 00:05:02.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:03:10.292 00:05:02.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:07:25.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39286 10 6452 1 2025-12-03 19:08:25.583 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 10 6452 1 2025-12-03 19:09:25.986 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37422 10 6452 1 2025-12-03 19:10:26.406 00:00:11.134 TCP 1.101.0.1:3000 -> 23.104.0.1:33508 10 6452 1 2025-12-03 19:11:27.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59088 10 6452 1 2025-12-03 19:11:42.300 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:11:42.127 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:11:42.173 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:11:42.218 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:11:42.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:12:27.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40046 10 6452 1 2025-12-03 19:09:10.293 00:05:02.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:09:10.296 00:05:02.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:13:28.399 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49320 10 6452 1 2025-12-03 19:14:28.805 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:37044 10 6452 1 2025-12-03 19:15:29.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-12-03 19:16:29.582 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-12-03 19:16:42.208 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:16:42.128 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:16:42.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:16:42.126 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:16:41.988 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:17:29.994 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46936 10 6452 1 2025-12-03 19:18:30.400 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36074 10 6452 1 2025-12-03 19:15:10.296 00:05:02.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:15:10.294 00:05:02.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:19:30.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58068 10 6452 1 2025-12-03 19:20:31.213 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 10 6452 1 2025-12-03 19:21:42.439 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:21:42.396 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:21:42.310 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:21:31.616 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-12-03 19:21:42.357 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:21:42.210 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:22:32.022 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-12-03 19:23:32.442 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49966 10 6452 1 2025-12-03 19:24:32.851 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-12-03 19:21:10.299 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:21:10.296 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:25:33.269 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60816 10 6452 1 2025-12-03 19:26:33.671 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40324 10 6452 1 2025-12-03 19:26:42.060 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:26:42.299 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:26:42.279 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:26:42.341 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:26:42.361 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:27:34.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52274 10 6452 1 2025-12-03 19:28:34.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 10 6452 1 2025-12-03 19:29:34.919 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:50102 10 6452 1 2025-12-03 19:30:35.310 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6452 1 2025-12-03 19:27:10.300 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:27:10.298 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:31:42.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:31:42.486 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:31:42.498 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:31:42.483 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:31:42.408 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:31:35.719 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:57812 10 6452 1 2025-12-03 19:32:36.156 00:00:10.655 TCP 1.101.0.1:3000 -> 23.104.0.1:43274 10 6452 1 2025-12-03 19:33:36.853 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60938 10 6452 1 2025-12-03 19:34:37.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52818 10 6452 1 2025-12-03 19:35:37.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46118 10 6452 1 2025-12-03 19:36:42.794 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:36:42.644 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:36:42.457 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:36:42.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:36:42.528 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:36:38.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-12-03 19:33:10.304 00:05:02.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:33:10.301 00:05:02.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:37:38.518 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:39038 12 10375 1 2025-12-03 19:38:38.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-12-03 19:39:39.366 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53800 10 6452 1 2025-12-03 19:40:39.726 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42872 10 6452 1 2025-12-03 19:41:42.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:41:42.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:41:42.631 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:41:42.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:41:42.675 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:41:40.130 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54162 10 6452 1 2025-12-03 19:42:40.490 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-12-03 19:39:10.305 00:05:02.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:39:10.302 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:43:40.895 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:49076 12 6556 1 2025-12-03 19:44:41.338 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57024 10 6452 1 2025-12-03 19:45:41.703 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57294 10 6452 1 2025-12-03 19:46:42.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:46:42.708 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:46:42.647 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:46:42.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:46:42.780 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:46:42.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53274 10 6452 1 2025-12-03 19:47:42.515 00:00:11.078 TCP 1.101.0.1:3000 -> 23.104.0.1:55852 10 6452 1 2025-12-03 19:48:43.631 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57074 10 6452 1 2025-12-03 19:45:10.305 00:05:02.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:45:10.308 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:49:44.033 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-12-03 19:50:44.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44350 10 6452 1 2025-12-03 19:51:42.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:51:42.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:51:42.791 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:51:43.078 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:51:42.873 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:51:44.844 00:00:10.824 TCP 1.101.0.1:3000 -> 23.104.0.1:46268 10 6452 1 2025-12-03 19:52:45.718 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46314 10 6452 1 2025-12-03 19:53:46.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42008 10 6452 1 2025-12-03 19:54:46.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36556 10 6452 1 2025-12-03 19:51:10.310 00:05:02.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-03 19:51:10.308 00:05:02.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-03 19:55:46.924 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-12-03 19:56:43.324 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-03 19:56:43.121 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-03 19:56:42.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:56:43.242 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-03 19:56:43.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-03 19:56:47.342 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40852 10 6452 1 2025-12-03 19:57:47.709 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:37446 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 909, avg pps: 0, avg bpp: 408 Time window: 2025-12-03 18:57:10 - 2025-12-03 19:57:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0046s User: 0.0008s Wall: 0.0023s flows/second: 61182.5 Runtime: 0.0023s