Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 07:59:39.858 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6870 1 2025-11-20 08:00:11.471 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:00:11.380 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:00:11.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:00:11.519 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:00:11.387 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:00:40.282 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37652 10 6870 1 2025-11-20 08:01:40.641 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50782 10 6870 1 2025-11-20 08:02:41.036 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54578 10 6870 1 2025-11-20 07:58:03.475 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 07:58:03.473 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:03:41.404 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 10 6870 1 2025-11-20 08:04:41.779 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:48614 10 6870 1 2025-11-20 08:05:11.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:05:11.762 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:05:11.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:05:11.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:05:11.996 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:05:42.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42066 10 6870 1 2025-11-20 08:06:42.969 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6870 1 2025-11-20 08:07:43.378 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58784 10 6870 1 2025-11-20 08:08:43.786 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41186 10 6870 1 2025-11-20 08:09:44.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36538 10 6870 1 2025-11-20 08:05:03.478 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:05:03.476 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:10:11.530 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:10:11.530 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:10:11.653 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:10:11.686 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:10:11.770 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:10:44.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6870 1 2025-11-20 08:11:44.956 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56676 10 6870 1 2025-11-20 08:12:45.361 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48570 10 6870 1 2025-11-20 08:13:45.764 00:00:14.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6870 1 2025-11-20 08:14:50.142 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6870 1 2025-11-20 08:15:11.934 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:15:11.807 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:15:11.807 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:15:11.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:15:11.852 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:15:50.543 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6870 1 2025-11-20 08:12:03.479 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:16:50.949 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6870 1 2025-11-20 08:12:03.477 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:17:51.354 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 12 10793 1 2025-11-20 08:18:51.787 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41502 10 6870 1 2025-11-20 08:19:52.190 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6870 1 2025-11-20 08:20:11.788 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:20:11.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:20:11.846 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:20:11.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:20:11.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:20:52.557 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6870 1 2025-11-20 08:21:52.957 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6870 1 2025-11-20 08:22:53.364 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49222 10 6870 1 2025-11-20 08:19:03.482 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:23:53.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6870 1 2025-11-20 08:19:03.480 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:24:54.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34956 10 6870 1 2025-11-20 08:25:12.235 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:25:11.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:25:12.152 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:25:11.977 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:25:12.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:25:54.539 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54420 10 6870 1 2025-11-20 08:26:54.903 00:00:10.868 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 12 6974 1 2025-11-20 08:27:55.809 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54754 10 6870 1 2025-11-20 08:28:56.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6870 1 2025-11-20 08:29:56.621 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6870 1 2025-11-20 08:30:12.024 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:30:12.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:30:12.073 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:30:11.942 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:30:12.180 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:26:03.488 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:26:03.485 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:30:56.990 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51892 10 6870 1 2025-11-20 08:31:57.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59116 10 6870 1 2025-11-20 08:32:57.797 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:48342 10 6870 1 2025-11-20 08:33:58.515 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34410 10 6870 1 2025-11-20 08:34:58.881 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39580 10 6870 1 2025-11-20 08:35:12.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:35:12.052 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:35:12.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:35:12.119 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:35:12.267 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:35:59.281 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51644 10 6870 1 2025-11-20 08:36:59.642 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 10 6870 1 2025-11-20 08:33:03.487 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:33:03.489 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:38:00.066 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6870 1 2025-11-20 08:39:00.477 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35470 10 6870 1 2025-11-20 08:40:12.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:40:12.196 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:40:12.169 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:40:12.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:40:00.882 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6870 1 2025-11-20 08:40:12.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:41:01.287 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57444 10 6870 1 2025-11-20 08:42:01.690 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:46772 10 6870 1 2025-11-20 08:43:02.254 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51090 10 6870 1 2025-11-20 08:44:02.634 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50296 10 6870 1 2025-11-20 08:40:03.491 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:40:03.493 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:45:12.514 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:45:12.552 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:45:12.357 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:45:03.040 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:32878 10 6870 1 2025-11-20 08:45:12.466 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:45:12.549 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:46:03.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54998 10 6870 1 2025-11-20 08:47:03.812 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6870 1 2025-11-20 08:48:04.217 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50570 10 6870 1 2025-11-20 08:49:04.612 00:00:12.821 TCP 1.101.0.1:3000 -> 23.104.0.1:44956 10 6870 1 2025-11-20 08:50:12.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:50:12.720 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:50:12.439 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:50:13.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:50:13.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:50:07.475 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6870 1 2025-11-20 08:51:07.873 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6870 1 2025-11-20 08:47:03.496 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:47:03.493 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:52:08.283 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6870 1 2025-11-20 08:53:08.683 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6870 1 2025-11-20 08:54:09.110 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42682 10 6870 1 2025-11-20 08:55:12.591 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:55:12.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:55:12.697 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:55:12.533 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:55:12.508 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:55:09.476 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6870 1 2025-11-20 08:56:09.878 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6870 1 2025-11-20 08:57:10.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6870 1 2025-11-20 08:58:10.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36206 10 6870 1 Summary: total flows: 135, total bytes: 438253, total packets: 998, avg bps: 969, avg pps: 0, avg bpp: 439 Time window: 2025-11-20 07:58:03 - 2025-11-20 08:58:21 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0027s User: 0.0013s Wall: 0.0025s flows/second: 54169.2 Runtime: 0.0025s