Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 10:59:01.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-11-20 11:00:14.835 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:00:14.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:00:01.523 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-11-20 11:00:15.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:00:15.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:00:15.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:01:01.889 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 12 6556 1 2025-11-20 10:57:03.541 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:02:02.303 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-11-20 11:03:02.711 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53886 10 6452 1 2025-11-20 11:04:03.120 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-11-20 11:00:03.540 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:05:03.523 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39328 10 6452 1 2025-11-20 11:05:15.383 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:05:15.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:05:15.303 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:05:15.113 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:05:15.301 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:06:03.926 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37196 10 6452 1 2025-11-20 11:07:04.332 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:56694 10 6452 1 2025-11-20 11:08:04.946 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6452 1 2025-11-20 11:04:03.545 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:09:05.353 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47436 10 6452 1 2025-11-20 11:10:15.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:10:15.211 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:10:15.340 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:10:15.030 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:10:05.760 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45650 10 6452 1 2025-11-20 11:10:15.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:11:06.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59548 10 6452 1 2025-11-20 11:07:03.545 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:12:06.580 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-11-20 11:13:06.977 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6452 1 2025-11-20 11:14:07.384 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46262 10 6452 1 2025-11-20 11:15:17.277 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:15:17.194 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:15:16.894 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:15:17.195 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:15:17.255 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:15:07.783 00:00:17.692 TCP 1.101.0.1:3000 -> 23.104.0.1:36088 10 6452 1 2025-11-20 11:11:03.548 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:16:15.517 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6452 1 2025-11-20 11:17:15.879 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43542 10 6452 1 2025-11-20 11:18:16.288 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56908 10 6452 1 2025-11-20 11:14:03.545 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:19:16.691 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-11-20 11:20:17.242 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:20:17.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:20:17.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:20:17.183 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:20:17.266 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:20:17.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-11-20 11:21:17.507 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-20 11:22:17.906 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-11-20 11:18:03.548 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:23:18.273 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6452 1 2025-11-20 11:24:18.673 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-11-20 11:25:17.078 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:25:17.358 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:25:17.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:25:17.347 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:25:17.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:25:19.036 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-11-20 11:21:03.548 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:26:19.433 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49786 10 6452 1 2025-11-20 11:27:19.841 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-20 11:28:20.263 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-11-20 11:29:20.669 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-20 11:25:03.551 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:30:17.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:30:17.559 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:30:17.482 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:30:17.343 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:30:17.565 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:30:21.094 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-20 11:31:21.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48990 10 6452 1 2025-11-20 11:32:21.925 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:56930 10 6452 1 2025-11-20 11:28:03.550 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:33:22.354 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-11-20 11:34:22.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6452 1 2025-11-20 11:35:17.636 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:35:17.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:35:17.555 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:35:17.553 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:35:17.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:35:23.182 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-11-20 11:36:23.599 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46994 10 6452 1 2025-11-20 11:32:03.552 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:37:23.997 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55842 10 6452 1 2025-11-20 11:38:24.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57594 10 6452 1 2025-11-20 11:39:24.808 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56008 10 6452 1 2025-11-20 11:35:03.551 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:40:17.690 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:40:17.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:40:17.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:40:17.687 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:40:17.819 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:40:25.210 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47942 10 6452 1 2025-11-20 11:41:25.571 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38188 10 6452 1 2025-11-20 11:42:25.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-20 11:43:26.375 00:00:14.107 TCP 1.101.0.1:3000 -> 23.104.0.1:38216 10 6452 1 2025-11-20 11:39:03.555 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:44:30.528 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:52634 10 6452 1 2025-11-20 11:45:17.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:45:17.701 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:45:17.708 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:45:17.458 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:45:17.708 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:45:30.967 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44192 10 6452 1 2025-11-20 11:46:31.375 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37922 10 6452 1 2025-11-20 11:42:03.555 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:47:31.778 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54442 10 6452 1 2025-11-20 11:48:32.143 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-11-20 11:49:32.544 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56008 12 6556 1 2025-11-20 11:50:17.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:50:17.669 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:50:17.744 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:50:18.137 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:50:17.746 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:50:32.945 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-11-20 11:46:03.562 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:51:33.365 00:00:11.013 TCP 1.101.0.1:3000 -> 23.104.0.1:58622 10 6452 1 2025-11-20 11:52:34.417 00:00:10.969 TCP 1.101.0.1:3000 -> 23.104.0.1:44624 12 10375 1 2025-11-20 11:53:35.429 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55866 10 6452 1 2025-11-20 11:49:03.562 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:54:35.838 00:00:10.785 TCP 1.101.0.1:3000 -> 23.104.0.1:55150 10 6452 1 2025-11-20 11:55:18.007 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:55:18.136 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:55:18.205 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:55:18.046 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:55:17.924 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:55:36.659 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-11-20 11:56:37.065 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35526 10 6452 1 2025-11-20 11:57:37.485 00:00:10.516 TCP 1.101.0.1:3000 -> 23.104.0.1:45890 14 14292 1 2025-11-20 11:53:03.564 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:58:38.068 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 Summary: total flows: 137, total bytes: 428848, total packets: 1028, avg bps: 922, avg pps: 0, avg bpp: 417 Time window: 2025-11-20 10:57:03 - 2025-11-20 11:59:03 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0046s User: 0.0008s Wall: 0.0023s flows/second: 58748.6 Runtime: 0.0023s