Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 20:54:02.720 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 20:59:14.710 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6661 1 2025-11-18 20:59:29.364 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 20:59:29.128 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 20:59:29.151 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 20:59:29.311 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 20:59:29.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:00:15.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41048 10 6661 1 2025-11-18 20:56:02.717 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:01:15.511 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53548 10 6661 1 2025-11-18 21:02:15.870 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:58048 14 10479 1 2025-11-18 21:03:16.396 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6452 1 2025-11-18 21:04:29.596 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:04:29.513 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:04:29.447 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:04:29.645 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:04:29.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:04:16.764 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-18 21:05:17.177 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58400 10 6452 1 2025-11-18 21:01:02.721 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:06:17.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-11-18 21:07:17.980 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53908 10 6452 1 2025-11-18 21:03:02.718 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:08:18.396 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-11-18 21:09:29.685 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:09:29.757 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:09:29.560 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:09:18.796 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 10 6452 1 2025-11-18 21:09:29.584 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:09:29.666 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:10:19.165 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32842 10 6452 1 2025-11-18 21:11:19.563 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49460 10 6452 1 2025-11-18 21:12:19.965 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6452 1 2025-11-18 21:08:02.722 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:13:20.327 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 12 6556 1 2025-11-18 21:14:29.710 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:14:29.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:14:29.844 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:14:29.660 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:14:29.624 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:14:20.730 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44032 10 6452 1 2025-11-18 21:10:02.722 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:15:21.144 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37068 10 6452 1 2025-11-18 21:16:21.503 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48818 10 6452 1 2025-11-18 21:17:21.910 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58668 10 6452 1 2025-11-18 21:18:22.316 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54112 10 6452 1 2025-11-18 21:19:29.955 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:19:29.948 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:19:29.605 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:19:29.919 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:19:30.003 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:19:22.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53912 10 6452 1 2025-11-18 21:15:02.725 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:20:23.111 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50168 10 6452 1 2025-11-18 21:21:23.516 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49960 10 6452 1 2025-11-18 21:17:02.723 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:22:23.914 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47890 10 6452 1 2025-11-18 21:23:24.275 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38498 10 6452 1 2025-11-18 21:24:29.897 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:24:29.902 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:24:29.950 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:24:24.643 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-18 21:24:29.992 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:24:30.034 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:25:25.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-11-18 21:26:25.408 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45618 10 6452 1 2025-11-18 21:22:02.727 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:27:25.809 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:59626 10 6452 1 2025-11-18 21:28:26.200 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 10 6452 1 2025-11-18 21:24:02.724 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:29:29.958 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:29:30.352 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:29:30.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:29:30.642 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:29:30.725 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:29:26.562 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44686 10 6452 1 2025-11-18 21:30:26.957 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38206 10 6452 1 2025-11-18 21:31:27.364 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33072 10 6452 1 2025-11-18 21:32:27.770 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48568 10 6452 1 2025-11-18 21:33:28.179 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-18 21:29:02.727 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:34:30.085 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:34:30.071 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:34:30.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:34:30.474 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:34:30.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:34:28.598 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34342 10 6452 1 2025-11-18 21:35:28.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49412 10 6452 1 2025-11-18 21:31:02.731 00:06:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:36:29.368 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49258 10 6452 1 2025-11-18 21:37:29.729 00:00:15.450 TCP 1.101.0.1:3000 -> 23.104.0.1:48494 10 6452 1 2025-11-18 21:38:35.234 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59632 10 6452 1 2025-11-18 21:39:29.976 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:39:29.812 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:39:30.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:39:30.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:39:30.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:39:35.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42894 10 6452 1 2025-11-18 21:40:36.041 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:52018 10 6452 1 2025-11-18 21:36:02.732 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:41:36.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39760 10 6452 1 2025-11-18 21:42:36.795 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 10 6452 1 2025-11-18 21:38:02.731 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:43:37.199 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49890 10 6452 1 2025-11-18 21:44:30.530 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:44:30.444 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:44:30.549 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:44:30.440 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:44:30.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:44:37.599 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6452 1 2025-11-18 21:45:37.960 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58534 10 6452 1 2025-11-18 21:46:38.322 00:00:11.298 TCP 1.101.0.1:3000 -> 23.104.0.1:47746 10 6452 1 2025-11-18 21:47:39.659 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-18 21:43:02.734 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:48:40.085 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-11-18 21:49:30.407 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:49:30.232 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:49:30.367 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:49:30.125 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:49:30.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:49:40.449 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-11-18 21:45:02.732 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:50:40.853 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60902 10 6452 1 2025-11-18 21:51:41.275 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37790 10 6452 1 2025-11-18 21:52:41.678 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59876 10 6452 1 2025-11-18 21:53:42.102 00:00:10.723 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-11-18 21:54:30.437 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 21:54:30.348 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 21:54:30.452 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:54:30.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 21:54:30.429 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 21:54:42.865 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33016 10 6452 1 2025-11-18 21:50:02.736 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 21:55:43.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46542 10 6452 1 2025-11-18 21:56:43.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-11-18 21:52:02.734 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 21:57:44.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 Summary: total flows: 137, total bytes: 416044, total packets: 1028, avg bps: 866, avg pps: 0, avg bpp: 404 Time window: 2025-11-18 20:54:02 - 2025-11-18 21:58:02 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0013s Wall: 0.0022s flows/second: 62649.3 Runtime: 0.0022s