Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 09:54:03.515 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:59:35.871 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60740 10 6452 1 2025-11-20 10:00:13.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:00:13.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:00:13.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:00:13.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:00:13.939 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:00:36.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-11-20 10:01:36.691 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-11-20 09:57:03.512 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:02:37.110 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40094 10 6452 1 2025-11-20 10:03:37.510 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-11-20 10:04:37.915 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-11-20 10:05:14.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:05:14.091 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:05:13.760 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:05:14.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:05:13.927 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:05:38.329 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6452 1 2025-11-20 10:01:03.517 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:06:38.727 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48246 10 6452 1 2025-11-20 10:07:39.135 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6452 1 2025-11-20 10:08:39.544 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54484 10 6452 1 2025-11-20 10:04:03.515 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:09:39.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60140 10 6452 1 2025-11-20 10:10:14.352 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:10:14.052 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:10:14.023 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:10:13.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:10:14.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:10:40.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-20 10:11:40.767 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56268 10 6452 1 2025-11-20 10:12:41.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56980 10 6452 1 2025-11-20 10:08:03.525 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:13:41.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43328 10 6452 1 2025-11-20 10:14:41.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-11-20 10:15:14.103 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:15:14.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:15:14.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:15:13.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:15:14.045 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:15:42.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-11-20 10:11:03.524 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:16:42.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-11-20 10:17:43.210 00:00:10.997 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-11-20 10:18:44.245 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42852 10 6452 1 2025-11-20 10:19:44.649 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-11-20 10:15:03.527 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:20:14.546 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:20:14.269 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:20:14.454 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:20:14.359 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:20:14.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:20:45.019 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50034 10 6452 1 2025-11-20 10:21:45.422 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56044 10 6452 1 2025-11-20 10:22:45.826 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-11-20 10:18:03.529 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:23:46.229 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56976 10 6452 1 2025-11-20 10:24:46.631 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-20 10:25:14.686 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:25:14.327 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:25:14.572 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:25:14.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:25:14.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:25:47.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52296 10 6452 1 2025-11-20 10:26:47.451 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41654 10 6452 1 2025-11-20 10:22:03.530 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:27:47.870 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57434 10 6452 1 2025-11-20 10:28:48.283 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:34054 10 6452 1 2025-11-20 10:29:48.712 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60818 10 6452 1 2025-11-20 10:25:03.529 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:30:14.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:30:14.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:30:14.433 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:30:14.373 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:30:14.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:30:49.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53806 10 6452 1 2025-11-20 10:31:49.526 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-11-20 10:32:49.945 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56946 10 6452 1 2025-11-20 10:33:50.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-11-20 10:29:03.533 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:34:50.765 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60630 10 6452 1 2025-11-20 10:35:14.696 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:35:14.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:35:14.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:35:14.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:35:14.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:35:51.126 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-11-20 10:32:03.531 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:36:51.529 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33888 10 6452 1 2025-11-20 10:37:51.938 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-11-20 10:38:52.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-11-20 10:39:52.773 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59840 10 6452 1 2025-11-20 10:40:14.783 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:40:14.550 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:40:14.636 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:40:14.472 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:40:14.701 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:36:03.533 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:40:53.187 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-11-20 10:41:53.595 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49072 10 6452 1 2025-11-20 10:42:53.997 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37354 10 6452 1 2025-11-20 10:39:03.533 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:43:54.400 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-11-20 10:44:54.759 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:54982 10 6452 1 2025-11-20 10:45:14.705 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:45:14.482 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:45:14.777 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:45:14.685 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:45:14.767 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:45:55.227 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50896 10 6452 1 2025-11-20 10:46:55.628 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52074 10 6452 1 2025-11-20 10:43:03.537 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:47:56.000 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39228 10 6452 1 2025-11-20 10:48:56.403 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55740 10 6452 1 2025-11-20 10:49:56.803 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-11-20 10:50:14.677 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:50:14.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:50:14.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:50:14.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:50:14.756 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:46:03.535 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:50:57.214 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-11-20 10:51:57.619 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-11-20 10:52:58.034 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 10 6452 1 2025-11-20 10:53:58.459 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-11-20 10:50:03.538 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:54:58.833 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60928 10 6452 1 2025-11-20 10:55:14.853 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:55:14.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:55:14.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:55:14.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:55:15.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:55:59.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53232 10 6452 1 2025-11-20 10:56:59.637 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58638 10 6452 1 2025-11-20 10:53:03.536 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:58:00.063 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 12 10375 1 Summary: total flows: 137, total bytes: 415209, total packets: 1024, avg bps: 851, avg pps: 0, avg bpp: 405 Time window: 2025-11-20 09:54:03 - 2025-11-20 10:59:03 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 72370.2 Runtime: 0.0019s