Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 17:59:38.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46352 10 6452 1 2025-12-05 18:00:39.109 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60834 10 6452 1 2025-12-05 17:57:11.329 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 17:57:11.327 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:01:39.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45806 10 6452 1 2025-12-05 18:02:38.582 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:02:38.666 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:02:38.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:02:38.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:02:38.666 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:02:39.936 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36394 10 6452 1 2025-12-05 18:03:40.360 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47160 10 6452 1 2025-12-05 18:04:40.758 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-12-05 18:05:41.155 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-12-05 18:06:41.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37552 10 6452 1 2025-12-05 18:03:11.329 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:03:11.332 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:07:38.817 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:07:38.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:07:38.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:07:38.734 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:07:38.830 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:07:41.975 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40170 10 6452 1 2025-12-05 18:08:42.382 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-12-05 18:09:42.795 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39990 10 6452 1 2025-12-05 18:10:43.155 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37938 10 6452 1 2025-12-05 18:11:43.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-12-05 18:12:38.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:12:38.600 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:12:38.722 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:12:38.704 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:12:38.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:12:43.924 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44628 10 6452 1 2025-12-05 18:09:11.329 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:09:11.333 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:13:44.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49412 10 6452 1 2025-12-05 18:14:44.756 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-12-05 18:15:45.159 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-12-05 18:16:45.563 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51596 10 6452 1 2025-12-05 18:17:38.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:17:38.513 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:17:38.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:17:38.995 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:17:38.916 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:17:45.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-12-05 18:18:46.364 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46234 10 6452 1 2025-12-05 18:15:11.330 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:15:11.332 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:19:46.765 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-12-05 18:20:47.171 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-12-05 18:21:47.539 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58710 10 6452 1 2025-12-05 18:22:38.938 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:22:38.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:22:38.605 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:22:38.855 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:22:38.718 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:22:47.932 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41542 10 6452 1 2025-12-05 18:23:48.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35296 10 6452 1 2025-12-05 18:24:48.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-12-05 18:21:11.333 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:21:11.335 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:25:49.176 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49184 10 6452 1 2025-12-05 18:26:49.595 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-12-05 18:27:39.035 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:27:38.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:27:38.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:27:38.952 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:27:38.878 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:27:49.996 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 10 6452 1 2025-12-05 18:28:50.420 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-12-05 18:29:50.827 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46626 10 6452 1 2025-12-05 18:30:51.226 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43132 10 6452 1 2025-12-05 18:27:11.334 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:27:11.338 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:31:51.640 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 10 6452 1 2025-12-05 18:32:39.028 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:32:38.943 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:32:39.115 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:32:38.943 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:32:39.144 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:32:52.053 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-12-05 18:33:52.462 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-12-05 18:34:52.859 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6452 1 2025-12-05 18:35:53.232 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-12-05 18:36:53.640 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53004 10 6452 1 2025-12-05 18:33:11.336 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:33:11.337 00:05:02.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:37:39.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:37:39.369 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:37:39.571 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:37:39.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:37:39.654 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:37:54.056 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-12-05 18:38:54.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41512 10 6452 1 2025-12-05 18:39:54.823 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-12-05 18:40:55.195 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-12-05 18:41:55.591 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43586 10 6452 1 2025-12-05 18:42:39.419 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:42:39.137 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:42:39.132 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:42:39.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:42:39.215 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:42:55.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33694 10 6452 1 2025-12-05 18:39:11.338 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:39:11.335 00:05:02.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:43:56.400 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-12-05 18:44:56.813 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 10 6452 1 2025-12-05 18:45:57.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-12-05 18:46:57.580 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54068 10 6452 1 2025-12-05 18:47:39.384 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:47:39.229 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:47:39.406 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:47:39.302 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:47:39.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:47:57.938 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43834 10 6452 1 2025-12-05 18:48:58.352 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:51674 12 10375 1 2025-12-05 18:45:11.338 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:45:11.342 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:49:58.793 00:00:10.548 TCP 1.101.0.1:3000 -> 23.104.0.1:52088 10 6452 1 2025-12-05 18:50:59.377 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-12-05 18:51:59.775 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-12-05 18:52:39.558 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:52:39.428 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:52:39.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:52:39.475 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:52:39.428 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:53:00.140 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44934 10 6452 1 2025-12-05 18:54:00.554 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42556 10 6452 1 2025-12-05 18:51:11.339 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 18:55:00.957 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58080 10 6452 1 2025-12-05 18:51:11.341 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:56:01.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35250 10 6452 1 2025-12-05 18:57:01.794 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46644 10 6452 1 2025-12-05 18:57:39.616 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 18:57:39.601 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 18:57:39.551 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:57:39.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 18:57:39.541 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 18:58:02.207 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53520 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 905, avg pps: 0, avg bpp: 409 Time window: 2025-12-05 17:57:11 - 2025-12-05 18:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0056s User: 0.0000s Wall: 0.0023s flows/second: 59661.1 Runtime: 0.0023s