Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 14:59:21.888 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38342 10 6452 1 2025-12-05 15:00:22.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-12-05 14:57:11.256 00:05:02.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 14:57:11.259 00:05:02.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:01:22.712 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48200 10 6452 1 2025-12-05 15:02:35.028 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:02:34.732 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:02:34.972 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:02:34.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:02:23.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50024 10 6452 1 2025-12-05 15:02:34.945 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:03:23.542 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47990 10 6452 1 2025-12-05 15:04:23.905 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45202 10 6452 1 2025-12-05 15:05:24.315 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53182 10 6452 1 2025-12-05 15:06:24.677 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47530 10 6452 1 2025-12-05 15:03:11.259 00:05:02.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:03:11.257 00:05:02.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:07:35.053 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:07:25.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35622 10 6452 1 2025-12-05 15:07:35.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:07:35.174 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:07:34.969 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:07:34.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:08:25.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-12-05 15:09:25.927 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53228 10 6452 1 2025-12-05 15:10:26.350 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6452 1 2025-12-05 15:11:26.752 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40416 10 6452 1 2025-12-05 15:12:35.128 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:12:35.115 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:12:35.245 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:12:34.977 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:12:35.327 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:12:27.157 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33930 10 6452 1 2025-12-05 15:09:11.261 00:05:02.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:09:11.259 00:05:02.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:13:27.555 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:39042 12 10375 1 2025-12-05 15:14:28.029 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37464 10 6452 1 2025-12-05 15:15:28.443 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-12-05 15:16:28.863 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53184 10 6452 1 2025-12-05 15:17:35.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:17:35.141 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:17:35.228 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:17:35.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:17:35.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:17:29.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 10 6452 1 2025-12-05 15:18:29.693 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49224 10 6452 1 2025-12-05 15:15:11.262 00:05:02.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:15:11.260 00:05:02.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:19:30.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53440 10 6452 1 2025-12-05 15:20:30.510 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 11 6504 1 2025-12-05 15:21:31.314 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47092 10 6452 1 2025-12-05 15:22:35.324 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:22:35.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:22:35.134 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:22:35.242 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:22:35.091 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:22:31.714 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56860 10 6452 1 2025-12-05 15:23:32.117 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51396 10 6452 1 2025-12-05 15:24:32.478 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38454 10 6452 1 2025-12-05 15:21:11.267 00:05:02.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:21:11.265 00:05:02.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:25:32.881 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45856 10 6452 1 2025-12-05 15:26:33.291 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34812 10 6452 1 2025-12-05 15:27:35.436 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:27:35.238 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:27:35.300 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:27:35.290 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:27:35.384 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:27:33.695 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:33310 10 6452 1 2025-12-05 15:28:34.091 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58056 10 6452 1 2025-12-05 15:29:34.495 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36852 10 6452 1 2025-12-05 15:30:34.892 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48834 10 6452 1 2025-12-05 15:27:11.268 00:05:02.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:27:11.266 00:05:02.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:31:35.309 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43376 10 6452 1 2025-12-05 15:32:35.568 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:32:35.471 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:32:35.475 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:32:35.456 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:32:35.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:32:35.718 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57336 10 6452 1 2025-12-05 15:33:36.108 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56606 10 6452 1 2025-12-05 15:34:36.473 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36394 10 6452 1 2025-12-05 15:35:36.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58282 10 6452 1 2025-12-05 15:36:37.293 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 10 6452 1 2025-12-05 15:33:11.269 00:05:02.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:33:11.266 00:05:02.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:37:35.646 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:37:35.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:37:35.587 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:37:35.562 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:37:35.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:37:37.765 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-12-05 15:38:38.145 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59218 10 6452 1 2025-12-05 15:39:38.514 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 12 6556 1 2025-12-05 15:40:38.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6452 1 2025-12-05 15:41:39.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46800 10 6452 1 2025-12-05 15:42:35.765 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:42:35.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:42:35.644 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:42:35.682 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:42:35.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:42:39.730 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51522 10 6452 1 2025-12-05 15:39:11.269 00:05:02.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:39:11.272 00:05:02.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:43:40.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-12-05 15:44:40.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35430 10 6452 1 2025-12-05 15:45:40.942 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38132 10 6452 1 2025-12-05 15:46:41.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40996 10 6452 1 2025-12-05 15:47:35.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:47:35.631 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:47:35.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:47:35.751 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:47:35.933 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:47:41.757 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-12-05 15:48:42.143 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-12-05 15:45:11.270 00:05:02.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:45:11.272 00:05:02.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:49:42.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39862 10 6452 1 2025-12-05 15:50:42.939 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37564 10 6452 1 2025-12-05 15:51:43.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-12-05 15:52:36.032 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:52:35.924 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:52:35.949 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:52:35.947 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:52:35.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:52:43.772 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34768 10 6452 1 2025-12-05 15:53:44.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53866 10 6452 1 2025-12-05 15:54:44.592 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-12-05 15:51:11.274 00:05:02.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 15:51:11.271 00:05:02.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 15:55:44.994 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41016 10 6452 1 2025-12-05 15:56:45.406 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44056 10 6452 1 2025-12-05 15:57:35.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:57:36.722 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 15:57:36.044 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 15:57:36.639 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 15:57:35.985 00:00:00.080 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 15:57:45.811 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60346 10 6452 1 Summary: total flows: 139, total bytes: 414627, total packets: 1015, avg bps: 910, avg pps: 0, avg bpp: 408 Time window: 2025-12-05 14:57:11 - 2025-12-05 15:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0048s User: 0.0012s Wall: 0.0024s flows/second: 57107.3 Runtime: 0.0025s