Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 11:59:38.481 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6452 1 2025-11-20 12:00:17.985 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:00:17.925 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:00:18.130 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:00:17.916 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:00:18.001 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:00:38.880 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 12 6556 1 2025-11-20 11:56:03.563 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:01:39.319 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40440 10 6452 1 2025-11-20 12:02:39.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33748 10 6452 1 2025-11-20 12:03:40.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-11-20 12:04:40.509 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 10 6452 1 2025-11-20 12:00:03.565 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:05:18.275 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:05:18.217 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:05:18.171 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:05:18.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:05:18.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:05:40.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-20 12:06:41.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56954 10 6452 1 2025-11-20 12:07:41.731 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45254 10 6452 1 2025-11-20 12:03:03.563 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:08:42.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35350 10 6452 1 2025-11-20 12:09:42.553 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33314 10 6452 1 2025-11-20 12:10:17.988 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:10:17.997 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:10:17.885 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:10:18.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:10:18.355 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:10:42.920 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-11-20 12:11:43.314 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 2025-11-20 12:07:03.567 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:12:43.717 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 12 10369 1 2025-11-20 12:13:44.219 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47404 10 6452 1 2025-11-20 12:14:44.629 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41960 10 6452 1 2025-11-20 12:10:03.566 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:15:18.404 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:15:18.406 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:15:18.334 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:15:18.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:15:18.564 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:15:44.997 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-11-20 12:16:45.409 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 10 6452 1 2025-11-20 12:17:45.821 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-11-20 12:18:46.226 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52870 10 6452 1 2025-11-20 12:14:03.568 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:19:46.637 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40638 10 6452 1 2025-11-20 12:20:18.448 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:20:18.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:20:18.450 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:20:17.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:20:18.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:20:47.008 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60282 10 6452 1 2025-11-20 12:21:47.409 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39264 10 6452 1 2025-11-20 12:17:03.567 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:22:47.812 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48226 10 6452 1 2025-11-20 12:23:48.221 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-20 12:24:48.580 00:00:10.608 TCP 1.101.0.1:3000 -> 23.104.0.1:40092 10 6452 1 2025-11-20 12:25:18.631 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:25:18.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:25:18.373 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:25:18.458 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:25:18.714 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:25:49.225 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35224 10 6452 1 2025-11-20 12:21:03.570 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:26:49.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41700 10 6452 1 2025-11-20 12:27:49.985 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-11-20 12:24:03.568 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:28:50.413 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-11-20 12:29:50.814 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-11-20 12:30:18.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:30:18.610 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:30:18.494 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:30:18.489 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:30:18.716 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:30:51.188 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60650 10 6452 1 2025-11-20 12:31:51.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-11-20 12:28:03.572 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:32:51.995 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37034 10 6452 1 2025-11-20 12:33:52.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36616 10 6452 1 2025-11-20 12:34:52.759 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:56200 10 6452 1 2025-11-20 12:35:18.636 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:35:18.794 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:35:18.752 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:35:18.895 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:35:18.977 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:35:53.189 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49262 10 6452 1 2025-11-20 12:31:03.572 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:36:53.594 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-11-20 12:37:53.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50302 10 6452 1 2025-11-20 12:38:54.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-11-20 12:35:03.576 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:39:54.766 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-11-20 12:40:19.132 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:40:19.184 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:40:18.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:40:18.827 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:40:18.911 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:40:55.134 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-11-20 12:41:55.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35772 10 6452 1 2025-11-20 12:38:03.575 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:42:55.943 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38960 10 6452 1 2025-11-20 12:43:56.357 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-11-20 12:44:56.763 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38386 10 6452 1 2025-11-20 12:45:19.149 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:45:19.135 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:45:19.192 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:45:19.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:45:19.217 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:45:57.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-11-20 12:42:03.577 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:46:57.593 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33472 10 6452 1 2025-11-20 12:47:57.959 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-11-20 12:48:58.375 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45306 10 6452 1 2025-11-20 12:45:03.575 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:49:58.777 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51214 10 6452 1 2025-11-20 12:50:19.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:50:19.079 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:50:18.965 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:50:18.711 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:50:19.077 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:50:59.190 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45916 10 6452 1 2025-11-20 12:51:59.590 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51192 10 6452 1 2025-11-20 12:52:59.950 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 13 13955 1 2025-11-20 12:49:03.579 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:54:00.434 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59336 10 6452 1 2025-11-20 12:55:00.844 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-11-20 12:55:19.108 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:55:19.113 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:55:19.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:55:18.997 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:55:19.081 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:56:01.275 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48192 10 6452 1 2025-11-20 12:52:03.577 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:57:01.684 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6452 1 2025-11-20 12:58:02.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40186 10 6452 1 Summary: total flows: 136, total bytes: 421949, total packets: 1015, avg bps: 905, avg pps: 0, avg bpp: 415 Time window: 2025-11-20 11:56:03 - 2025-11-20 12:58:12 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0013s Wall: 0.0014s flows/second: 94707.8 Runtime: 0.0014s