Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 08:54:03.499 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:54:03.496 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:59:11.109 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42154 10 6870 1 2025-11-20 09:00:12.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:00:12.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:00:12.661 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:00:12.677 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:00:12.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:00:11.472 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6870 1 2025-11-20 09:01:11.873 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 10 6870 1 2025-11-20 09:02:12.284 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6870 1 2025-11-20 09:03:12.649 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:33614 12 10369 1 2025-11-20 09:01:03.500 00:03:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-11-20 09:04:13.137 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-11-20 09:05:12.823 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:05:12.726 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:05:12.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:05:12.878 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:05:12.961 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:05:13.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-11-20 09:01:03.499 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:06:13.940 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-11-20 09:07:14.352 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:34056 10 6452 1 2025-11-20 09:08:14.982 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36084 10 6452 1 2025-11-20 09:09:15.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-11-20 09:05:03.503 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:10:12.991 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:10:12.921 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:10:12.857 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:10:12.908 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:10:12.867 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:10:15.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58360 10 6452 1 2025-11-20 09:11:16.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 10 6452 1 2025-11-20 09:12:16.606 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-11-20 09:08:03.501 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:13:17.018 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56002 10 6452 1 2025-11-20 09:14:17.419 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-20 09:15:13.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:15:12.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:15:12.966 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:15:12.866 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:15:12.972 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:15:17.778 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56452 10 6452 1 2025-11-20 09:16:18.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44104 10 6452 1 2025-11-20 09:12:03.505 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:17:18.588 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-11-20 09:18:18.996 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 12 10369 1 2025-11-20 09:19:19.821 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55470 10 6452 1 2025-11-20 09:15:03.504 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:20:13.096 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:20:13.039 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:20:13.051 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:20:13.148 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:20:13.231 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:20:20.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56948 10 6452 1 2025-11-20 09:21:20.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-11-20 09:22:20.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48944 10 6452 1 2025-11-20 09:23:21.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49358 10 6452 1 2025-11-20 09:19:03.507 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:24:21.807 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48706 10 6452 1 2025-11-20 09:25:13.093 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:25:13.214 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:25:13.012 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:25:12.952 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:25:13.035 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:25:22.206 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-11-20 09:26:22.609 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57856 10 6452 1 2025-11-20 09:22:03.505 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:27:23.026 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58628 10 6452 1 2025-11-20 09:28:23.434 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51842 10 6452 1 2025-11-20 09:29:23.881 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6452 1 2025-11-20 09:30:13.329 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:30:13.248 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:30:13.148 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:30:13.353 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:30:13.246 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:30:24.288 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58708 10 6452 1 2025-11-20 09:26:03.507 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:31:24.652 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-11-20 09:32:25.057 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 10 6452 1 2025-11-20 09:33:25.479 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-20 09:29:03.505 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:34:25.890 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-11-20 09:35:13.440 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:35:13.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:35:13.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:35:13.383 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:35:13.466 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:35:26.305 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58168 10 6452 1 2025-11-20 09:36:26.712 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34828 10 6452 1 2025-11-20 09:37:27.125 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37376 10 6452 1 2025-11-20 09:33:03.510 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:38:27.531 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52512 10 6452 1 2025-11-20 09:39:27.898 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-11-20 09:40:13.544 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.495 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:40:13.337 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.437 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.520 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:40:28.312 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-11-20 09:36:03.506 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:41:28.717 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54672 10 6452 1 2025-11-20 09:42:29.102 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35538 10 6452 1 2025-11-20 09:43:29.471 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43352 10 6452 1 2025-11-20 09:44:29.879 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58268 10 6452 1 2025-11-20 09:40:03.510 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:45:13.614 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:45:13.437 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:45:13.492 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:45:13.608 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:45:13.691 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:45:30.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42118 10 6452 1 2025-11-20 09:46:30.687 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-11-20 09:47:31.055 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-11-20 09:43:03.508 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:48:31.457 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-11-20 09:49:31.857 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-11-20 09:50:13.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:50:13.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:50:13.646 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:50:13.343 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:50:13.530 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:50:32.270 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-11-20 09:51:32.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6452 1 2025-11-20 09:47:03.511 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:52:33.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33424 10 6452 1 2025-11-20 09:53:33.435 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46310 10 6452 1 2025-11-20 09:54:33.846 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36352 10 6452 1 2025-11-20 09:50:03.513 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:55:13.890 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:55:13.802 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:55:13.648 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:55:13.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:55:13.807 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:55:34.261 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54884 10 6452 1 2025-11-20 09:56:34.662 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34786 10 6452 1 2025-11-20 09:57:35.104 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55166 10 6452 1 2025-11-20 09:58:35.475 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 Summary: total flows: 138, total bytes: 426875, total packets: 1030, avg bps: 879, avg pps: 0, avg bpp: 414 Time window: 2025-11-20 08:54:03 - 2025-11-20 09:58:45 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0030s User: 0.0020s Wall: 0.0024s flows/second: 56835.6 Runtime: 0.0024s