Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 11:59:05.404 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41016 10 6452 1 2025-12-05 12:00:05.805 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-12-05 11:57:11.191 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 11:57:11.189 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:01:06.214 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48696 10 6452 1 2025-12-05 12:02:06.620 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-12-05 12:02:31.299 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:02:31.234 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:02:30.976 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:02:31.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:02:31.329 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:03:07.046 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:52092 12 10369 1 2025-12-05 12:04:07.533 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44258 10 6452 1 2025-12-05 12:05:07.940 00:00:10.783 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-12-05 12:06:08.762 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 10 6452 1 2025-12-05 12:03:11.190 00:05:02.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:03:11.193 00:05:02.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:07:09.174 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58238 10 6452 1 2025-12-05 12:07:31.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:07:31.164 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:07:31.364 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:07:31.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:07:31.528 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:08:09.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51282 10 6452 1 2025-12-05 12:09:09.982 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-12-05 12:10:10.380 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-12-05 12:11:10.785 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50986 10 6452 1 2025-12-05 12:12:11.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35496 10 6452 1 2025-12-05 12:12:31.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:12:31.385 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:12:31.437 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:12:31.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:12:31.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:09:11.193 00:05:02.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:09:11.198 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:13:11.612 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 10 6452 1 2025-12-05 12:14:12.018 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50728 10 6452 1 2025-12-05 12:15:12.383 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51014 10 6452 1 2025-12-05 12:16:12.786 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52900 10 6452 1 2025-12-05 12:17:13.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43448 10 6452 1 2025-12-05 12:17:32.338 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:17:32.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:17:32.210 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:17:32.255 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:17:32.268 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:18:13.560 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 10 6452 1 2025-12-05 12:15:11.200 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:15:11.204 00:05:02.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:19:13.963 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45820 10 6452 1 2025-12-05 12:20:14.368 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-12-05 12:21:14.780 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53286 10 6452 1 2025-12-05 12:22:15.185 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-12-05 12:22:31.558 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:22:31.572 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:22:31.528 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:22:31.474 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:22:31.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:23:15.584 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59194 10 6452 1 2025-12-05 12:24:15.985 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-12-05 12:21:11.201 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:21:11.204 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:25:16.409 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-12-05 12:26:16.775 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51496 10 6452 1 2025-12-05 12:27:17.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40372 10 6452 1 2025-12-05 12:27:32.202 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:27:31.767 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:27:31.954 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:27:32.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:27:32.037 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:28:17.585 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 12 10375 1 2025-12-05 12:29:18.086 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55152 10 6452 1 2025-12-05 12:30:18.500 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41098 10 6452 1 2025-12-05 12:27:11.205 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:27:11.207 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:31:18.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59654 10 6452 1 2025-12-05 12:32:19.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49630 10 6452 1 2025-12-05 12:32:32.118 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:32:32.044 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:32:31.832 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:32:32.035 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:32:31.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:33:19.720 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52946 10 6452 1 2025-12-05 12:34:20.116 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60064 10 6452 1 2025-12-05 12:35:20.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54870 10 6452 1 2025-12-05 12:36:20.913 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:42078 10 6452 1 2025-12-05 12:33:11.206 00:05:02.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:33:11.207 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:37:32.019 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:37:31.826 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:37:31.951 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:37:21.331 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-12-05 12:37:31.936 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:37:32.073 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:38:21.692 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:60446 12 10375 1 2025-12-05 12:39:22.169 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35588 10 6452 1 2025-12-05 12:40:22.569 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54210 10 6452 1 2025-12-05 12:41:22.936 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 2025-12-05 12:42:32.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:42:23.357 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-12-05 12:42:32.198 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:42:31.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:42:32.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:42:32.065 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:39:11.209 00:05:02.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:39:11.206 00:05:02.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:43:23.766 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-12-05 12:44:24.139 00:00:10.611 TCP 1.101.0.1:3000 -> 23.104.0.1:54316 11 6504 1 2025-12-05 12:45:24.790 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-12-05 12:46:25.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40026 10 6452 1 2025-12-05 12:47:25.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50620 10 6452 1 2025-12-05 12:47:32.276 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:47:32.062 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:47:32.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:47:32.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:47:32.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:48:26.005 00:00:10.860 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-12-05 12:45:11.209 00:05:02.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:45:11.212 00:05:02.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:49:26.906 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50742 10 6452 1 2025-12-05 12:50:27.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41222 10 6452 1 2025-12-05 12:51:27.713 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58384 10 6452 1 2025-12-05 12:52:32.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:52:32.302 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:52:32.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:52:32.223 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:52:32.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:52:28.120 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59104 10 6452 1 2025-12-05 12:53:28.477 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:44586 11 6504 1 2025-12-05 12:54:28.933 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 11 6504 1 2025-12-05 12:51:11.212 00:05:02.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 12:51:11.210 00:05:02.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 12:55:29.410 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46950 10 6452 1 2025-12-05 12:56:29.814 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54236 10 6452 1 2025-12-05 12:57:32.171 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 12:57:32.317 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:57:32.286 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 12:57:32.429 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 12:57:32.367 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 12:57:30.216 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60488 10 6452 1 2025-12-05 12:58:30.617 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 Summary: total flows: 140, total bytes: 428919, total packets: 1029, avg bps: 929, avg pps: 0, avg bpp: 416 Time window: 2025-12-05 11:57:11 - 2025-12-05 12:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0034s Wall: 0.0017s flows/second: 84343.9 Runtime: 0.0017s