Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 14:58:54.851 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 10 6452 1 2025-11-20 14:55:03.610 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 14:59:55.295 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-11-20 15:00:21.677 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.557 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:00:21.508 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.689 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.771 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:00:55.702 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-11-20 15:01:56.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 10 6452 1 2025-11-20 14:58:03.608 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:02:56.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6452 1 2025-11-20 15:03:56.929 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-11-20 15:04:57.336 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-11-20 15:05:21.885 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:05:21.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:05:22.062 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:05:21.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:05:22.044 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:05:57.738 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53384 10 6452 1 2025-11-20 15:02:03.612 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:06:58.145 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-11-20 15:07:58.548 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43694 10 6452 1 2025-11-20 15:08:58.947 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 10 6452 1 2025-11-20 15:05:03.611 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:09:59.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53248 10 6452 1 2025-11-20 15:10:21.706 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:10:21.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:10:21.815 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:10:21.675 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:10:21.624 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:10:59.716 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54764 10 6452 1 2025-11-20 15:12:00.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 10 6452 1 2025-11-20 15:13:00.522 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55918 10 6452 1 2025-11-20 15:09:03.616 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:14:00.917 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-11-20 15:15:01.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-11-20 15:15:21.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:15:22.071 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:15:21.902 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:15:21.824 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:15:21.906 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:16:01.691 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45860 10 6452 1 2025-11-20 15:12:03.615 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:17:02.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-20 15:18:02.517 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54214 10 6452 1 2025-11-20 15:19:02.921 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57926 10 6452 1 2025-11-20 15:20:03.314 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-20 15:20:21.913 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:20:21.915 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:20:21.854 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:20:22.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:20:22.160 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:16:03.619 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:21:03.677 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 10 6452 1 2025-11-20 15:22:04.103 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57806 10 6452 1 2025-11-20 15:23:04.512 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40710 10 6452 1 2025-11-20 15:19:03.618 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:24:04.955 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6452 1 2025-11-20 15:25:05.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-11-20 15:25:22.265 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:25:22.182 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:25:21.936 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:25:22.040 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:25:22.136 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:26:05.737 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59502 10 6452 1 2025-11-20 15:27:06.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39340 10 6452 1 2025-11-20 15:23:03.623 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:28:06.512 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-11-20 15:29:06.902 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34382 10 6452 1 2025-11-20 15:30:22.269 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:30:07.314 00:00:12.895 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-11-20 15:30:22.339 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:30:22.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:30:22.269 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:30:22.353 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:26:03.621 00:06:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:31:10.252 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-11-20 15:32:10.656 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-11-20 15:33:11.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-11-20 15:34:11.498 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55286 10 6452 1 2025-11-20 15:30:03.625 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:35:22.510 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:35:22.179 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:35:22.333 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:35:22.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:35:11.860 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 10 6452 1 2025-11-20 15:35:22.427 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:36:12.273 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 10 6452 1 2025-11-20 15:37:12.638 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 10 6452 1 2025-11-20 15:33:03.622 00:06:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:38:13.041 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 10 6452 1 2025-11-20 15:39:13.441 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 10 6452 1 2025-11-20 15:40:22.364 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:40:22.386 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:40:22.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:40:13.839 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6452 1 2025-11-20 15:40:22.448 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:40:22.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:41:14.264 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46120 10 6452 1 2025-11-20 15:37:03.626 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:42:14.667 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 10 6452 1 2025-11-20 15:43:15.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-11-20 15:44:15.505 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:32804 10 6452 1 2025-11-20 15:40:03.624 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:45:22.469 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:45:22.556 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.585 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.668 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:45:15.877 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59942 10 6452 1 2025-11-20 15:46:16.310 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-20 15:47:16.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-11-20 15:48:17.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33118 10 6452 1 2025-11-20 15:44:03.627 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:49:17.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41708 10 6452 1 2025-11-20 15:50:23.103 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:50:23.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:50:22.546 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:50:22.718 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:50:22.800 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:50:17.946 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 10 6452 1 2025-11-20 15:51:18.310 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-11-20 15:47:03.624 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:52:18.715 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43132 10 6452 1 2025-11-20 15:53:19.103 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 10 6452 1 2025-11-20 15:54:19.505 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 10 6452 1 2025-11-20 15:55:22.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:55:22.633 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:55:22.630 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:55:22.440 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:55:22.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:55:19.907 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53700 10 6452 1 2025-11-20 15:51:03.628 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:56:20.317 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-11-20 15:57:20.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39008 10 6452 1 2025-11-20 15:58:21.109 00:00:17.485 TCP 1.101.0.1:3000 -> 23.104.0.1:39116 10 6452 1 Summary: total flows: 137, total bytes: 416877, total packets: 1018, avg bps: 874, avg pps: 0, avg bpp: 409 Time window: 2025-11-20 14:55:03 - 2025-11-20 15:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0043s User: 0.0011s Wall: 0.0028s flows/second: 48511.6 Runtime: 0.0028s