Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-05 18:59:02.612 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33152 10 6452 1 2025-12-05 19:00:03.002 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59780 10 6452 1 2025-12-05 19:01:03.369 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-12-05 18:57:11.349 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 18:57:11.346 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:02:03.735 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59956 10 6452 1 2025-12-05 19:02:39.625 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:02:39.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:02:39.691 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:02:39.693 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:02:39.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:03:04.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36396 10 6452 1 2025-12-05 19:04:04.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-12-05 19:05:04.948 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:36466 10 6452 1 2025-12-05 19:06:05.483 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55188 10 6452 1 2025-12-05 19:03:11.350 00:05:02.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:03:11.354 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:07:05.890 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:52848 10 6452 1 2025-12-05 19:07:40.012 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:07:39.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:07:40.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:07:39.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:07:40.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:08:06.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54128 10 6452 1 2025-12-05 19:09:06.679 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-12-05 19:10:07.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34228 10 6452 1 2025-12-05 19:11:07.503 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46766 10 6452 1 2025-12-05 19:12:07.862 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-12-05 19:12:39.866 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:12:39.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:12:39.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:12:39.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:12:39.860 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:09:11.354 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:09:11.351 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:13:08.232 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-12-05 19:14:08.593 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6452 1 2025-12-05 19:15:08.992 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33096 10 6452 1 2025-12-05 19:16:09.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37220 10 6452 1 2025-12-05 19:17:09.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-12-05 19:17:40.143 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:17:39.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:17:39.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:17:40.059 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:17:39.924 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:18:10.202 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-12-05 19:15:11.355 00:05:02.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:15:11.354 00:05:02.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:19:10.616 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46432 10 6452 1 2025-12-05 19:20:11.015 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57250 10 6452 1 2025-12-05 19:21:11.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-12-05 19:22:11.822 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-12-05 19:22:40.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:22:40.074 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:22:40.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:22:40.098 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:22:40.254 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:23:12.224 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56438 10 6452 1 2025-12-05 19:24:12.628 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57640 10 6452 1 2025-12-05 19:21:11.357 00:05:02.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:21:11.353 00:05:02.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:25:13.036 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50186 10 6452 1 2025-12-05 19:26:13.473 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36118 10 6452 1 2025-12-05 19:27:13.837 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:41360 10 6452 1 2025-12-05 19:27:40.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:27:40.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:27:40.199 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:27:40.139 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:27:40.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:28:14.218 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55108 10 6452 1 2025-12-05 19:29:14.582 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58928 10 6452 1 2025-12-05 19:30:14.988 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57476 10 6452 1 2025-12-05 19:27:11.354 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:27:11.356 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:31:15.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47958 10 6452 1 2025-12-05 19:32:15.811 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39188 10 6452 1 2025-12-05 19:32:40.394 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:32:40.358 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:32:40.464 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:32:40.234 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:32:40.546 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:33:16.221 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 10 6452 1 2025-12-05 19:34:16.647 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-12-05 19:35:17.061 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-12-05 19:36:17.477 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58648 10 6452 1 2025-12-05 19:33:11.356 00:05:02.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:33:11.359 00:05:02.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:37:17.839 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45854 10 6452 1 2025-12-05 19:37:40.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:37:40.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:37:40.152 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:37:40.422 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:37:40.341 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:38:18.262 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46808 10 6452 1 2025-12-05 19:39:18.623 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50360 10 6452 1 2025-12-05 19:40:18.992 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44778 10 6452 1 2025-12-05 19:41:19.403 00:00:10.524 TCP 1.101.0.1:3000 -> 23.104.0.1:34032 10 6452 1 2025-12-05 19:42:19.961 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-12-05 19:42:40.588 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:42:40.582 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:42:40.579 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:42:40.617 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:42:40.669 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:39:11.357 00:05:02.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:39:11.359 00:05:02.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:43:20.321 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:54608 12 10375 1 2025-12-05 19:44:20.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-12-05 19:45:21.210 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59246 10 6452 1 2025-12-05 19:46:21.615 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-12-05 19:47:22.033 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 10 6452 1 2025-12-05 19:47:40.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:47:40.528 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:47:40.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:47:40.522 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:47:40.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:48:22.435 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-12-05 19:45:11.362 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:45:11.366 00:05:02.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:49:22.837 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 11 6504 1 2025-12-05 19:50:23.315 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46832 10 6452 1 2025-12-05 19:51:23.694 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-12-05 19:52:40.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:52:24.110 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 10 6452 1 2025-12-05 19:52:40.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:52:40.682 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:52:40.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:52:40.547 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:53:24.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35956 10 6452 1 2025-12-05 19:54:24.914 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49470 10 6452 1 2025-12-05 19:51:11.366 00:05:02.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-12-05 19:51:11.363 00:05:02.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-12-05 19:55:25.316 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39344 10 6452 1 2025-12-05 19:56:25.722 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49332 10 6452 1 2025-12-05 19:57:40.923 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-12-05 19:57:26.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46518 10 6452 1 2025-12-05 19:57:40.716 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-12-05 19:57:40.656 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:57:40.841 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-12-05 19:57:40.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-12-05 19:58:26.535 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:46910 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 913, avg pps: 0, avg bpp: 411 Time window: 2025-12-05 18:57:11 - 2025-12-05 19:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0010s Wall: 0.0017s flows/second: 80087.6 Runtime: 0.0018s