Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 01:58:46.600 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-11-20 01:54:03.335 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:54:03.332 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:59:47.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34416 10 6452 1 2025-11-20 02:00:04.254 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:00:04.324 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:00:04.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:00:04.001 00:00:00.052 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:00:04.084 00:00:00.052 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:00:47.407 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59462 10 6452 1 2025-11-20 02:01:47.811 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40670 10 6452 1 2025-11-20 02:02:48.211 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-20 02:03:48.612 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45450 10 6452 1 2025-11-20 02:04:49.019 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-11-20 02:05:04.444 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:05:04.211 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:05:04.389 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:05:04.058 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:05:04.471 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:01:03.338 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:05:49.592 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-11-20 02:01:03.341 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:06:49.966 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56032 10 6452 1 2025-11-20 02:07:50.386 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 12 10375 1 2025-11-20 02:08:50.818 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-11-20 02:10:04.272 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:10:04.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:10:04.456 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:09:51.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-11-20 02:10:04.443 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:10:04.526 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:10:51.619 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-11-20 02:11:52.005 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42938 10 6452 1 2025-11-20 02:08:03.339 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:08:03.343 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:12:52.404 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-11-20 02:13:52.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 10 6452 1 2025-11-20 02:15:04.527 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:15:04.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:15:04.606 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:15:04.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:14:53.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47362 10 6452 1 2025-11-20 02:15:04.444 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:15:53.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55262 10 6452 1 2025-11-20 02:16:54.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48840 10 6452 1 2025-11-20 02:17:54.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 10 6452 1 2025-11-20 02:18:54.828 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46054 10 6452 1 2025-11-20 02:20:04.745 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:15:03.344 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:20:04.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:20:04.508 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:20:04.582 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:20:04.666 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:15:03.343 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:19:55.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55232 10 6452 1 2025-11-20 02:20:55.594 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 10 6452 1 2025-11-20 02:21:55.999 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43178 10 6452 1 2025-11-20 02:22:56.402 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 12 6556 1 2025-11-20 02:23:56.820 00:00:10.810 TCP 1.101.0.1:3000 -> 23.104.0.1:38604 10 6452 1 2025-11-20 02:25:05.161 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:25:05.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:24:57.675 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-20 02:25:05.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:25:05.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:25:05.425 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:25:58.107 00:00:11.342 TCP 1.101.0.1:3000 -> 23.104.0.1:32792 10 6452 1 2025-11-20 02:22:03.342 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:22:03.346 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:26:59.490 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37214 10 6452 1 2025-11-20 02:27:59.854 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52738 10 6452 1 2025-11-20 02:29:00.269 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33508 10 6452 1 2025-11-20 02:30:04.691 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:30:04.903 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:30:04.820 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:30:05.005 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:30:05.086 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:30:00.674 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46636 10 6452 1 2025-11-20 02:31:01.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50918 10 6452 1 2025-11-20 02:32:01.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-11-20 02:33:01.921 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6452 1 2025-11-20 02:29:03.349 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:29:03.347 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:34:02.321 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59354 10 6452 1 2025-11-20 02:35:04.893 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:35:04.895 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:35:04.902 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:35:04.956 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:35:05.039 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:35:02.728 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-11-20 02:36:03.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32956 10 6452 1 2025-11-20 02:37:03.547 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-11-20 02:38:03.952 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-11-20 02:39:04.365 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-11-20 02:40:04.903 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:40:04.953 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:40:05.051 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:40:05.047 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:40:05.038 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:40:04.911 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-11-20 02:36:03.351 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:36:03.350 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:41:05.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-11-20 02:42:05.711 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46308 10 6452 1 2025-11-20 02:43:06.115 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46448 10 6452 1 2025-11-20 02:44:06.494 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-11-20 02:45:04.963 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:45:05.242 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:45:05.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:45:05.159 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:45:06.900 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6452 1 2025-11-20 02:46:07.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-11-20 02:47:07.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45256 10 6452 1 2025-11-20 02:43:03.350 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:43:03.353 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:48:08.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54470 10 6452 1 2025-11-20 02:49:08.537 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59676 10 6452 1 2025-11-20 02:50:05.370 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:50:05.421 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:50:05.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:50:05.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:50:05.285 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:50:08.941 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47386 10 6452 1 2025-11-20 02:51:09.315 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:53082 10 6452 1 2025-11-20 02:52:09.672 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-11-20 02:53:10.046 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-11-20 02:54:10.457 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-11-20 02:50:03.357 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:50:03.355 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:55:05.546 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:55:05.464 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:55:05.425 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:55:05.465 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:55:10.856 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-11-20 02:56:11.278 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42370 10 6452 1 2025-11-20 02:57:11.681 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51890 10 6452 1 2025-11-20 02:58:12.108 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:50846 12 10369 1 Summary: total flows: 138, total bytes: 425682, total packets: 1038, avg bps: 882, avg pps: 0, avg bpp: 410 Time window: 2025-11-20 01:54:03 - 2025-11-20 02:58:22 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0046s User: 0.0018s Wall: 0.0020s flows/second: 69452.1 Runtime: 0.0020s