Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 15:54:03.627 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:59:28.637 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-11-20 16:00:22.870 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:00:22.870 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:00:23.001 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:00:22.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:00:22.952 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:00:29.054 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46306 10 6452 1 2025-11-20 16:01:29.457 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43976 10 6452 1 2025-11-20 16:02:29.864 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-11-20 15:58:03.630 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:03:30.236 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44818 10 6452 1 2025-11-20 16:04:30.644 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6452 1 2025-11-20 16:05:22.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:05:22.880 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:05:22.808 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:05:22.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:05:22.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:05:31.066 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60632 10 6452 1 2025-11-20 16:01:03.630 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:06:31.474 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38544 10 6452 1 2025-11-20 16:07:31.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-11-20 16:08:32.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-11-20 16:09:32.686 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35982 10 6452 1 2025-11-20 16:05:03.634 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:10:23.380 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:10:23.011 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:10:23.466 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:10:22.788 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:10:23.462 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:10:33.048 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6452 1 2025-11-20 16:11:33.415 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44694 10 6452 1 2025-11-20 16:12:33.821 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51230 10 6452 1 2025-11-20 16:08:03.631 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:13:34.222 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-11-20 16:14:34.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35742 10 6452 1 2025-11-20 16:15:22.997 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:15:23.238 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:15:23.231 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:15:23.083 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:15:22.914 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:15:34.989 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41020 10 6452 1 2025-11-20 16:16:35.355 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35564 10 6452 1 2025-11-20 16:12:03.634 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:17:35.713 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-11-20 16:18:36.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-11-20 16:19:36.514 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34560 10 6452 1 2025-11-20 16:15:03.635 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:20:23.091 00:00:00.054 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:20:23.028 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:20:23.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:20:23.078 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:20:23.009 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:20:36.875 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53248 10 6452 1 2025-11-20 16:21:37.261 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48028 10 6452 1 2025-11-20 16:22:37.672 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-11-20 16:23:38.124 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-11-20 16:19:03.640 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:24:38.533 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-11-20 16:25:23.152 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:25:23.368 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:25:23.362 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:25:23.313 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:25:23.396 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:25:38.913 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56396 10 6452 1 2025-11-20 16:26:39.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-20 16:22:03.641 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:27:39.731 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48004 10 6452 1 2025-11-20 16:28:40.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 2025-11-20 16:29:40.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46764 10 6452 1 2025-11-20 16:30:23.372 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:30:23.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:30:23.376 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:30:23.375 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:30:23.458 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:30:40.957 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33352 10 6452 1 2025-11-20 16:26:03.642 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:31:41.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43604 10 6452 1 2025-11-20 16:32:41.764 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:42604 10 6452 1 2025-11-20 16:33:42.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45068 10 6452 1 2025-11-20 16:29:03.641 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:34:42.552 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 12 6556 1 2025-11-20 16:35:23.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:35:23.577 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:35:23.404 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:35:23.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:35:23.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:35:42.957 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60954 10 6452 1 2025-11-20 16:36:43.323 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45882 10 6452 1 2025-11-20 16:37:43.727 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-11-20 16:33:03.643 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:38:44.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-11-20 16:39:44.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54624 10 6452 1 2025-11-20 16:40:23.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:40:23.701 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:40:23.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:40:23.386 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:40:23.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:40:44.952 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-11-20 16:36:03.643 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:41:45.322 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-11-20 16:42:45.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-20 16:43:46.143 00:00:10.704 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-11-20 16:44:46.902 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 12 6556 1 2025-11-20 16:40:03.644 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:45:23.729 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:45:23.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:45:23.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:45:23.666 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:45:23.749 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:45:47.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-11-20 16:46:47.730 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48066 10 6452 1 2025-11-20 16:47:48.163 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53410 10 6452 1 2025-11-20 16:43:03.641 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:48:48.569 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41542 10 6452 1 2025-11-20 16:49:48.975 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6452 1 2025-11-20 16:50:23.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:50:23.867 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:50:23.989 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:50:24.115 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:50:24.197 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:50:49.385 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-11-20 16:51:49.800 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-11-20 16:47:03.647 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:52:50.206 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43254 10 6452 1 2025-11-20 16:53:50.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46424 10 6452 1 2025-11-20 16:50:03.644 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:54:50.970 00:00:16.745 TCP 1.101.0.1:3000 -> 23.104.0.1:43418 10 6452 1 2025-11-20 16:55:23.808 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:55:23.820 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:55:23.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:55:23.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:55:23.885 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:55:57.762 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56880 10 6452 1 2025-11-20 16:56:58.179 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60384 10 6452 1 2025-11-20 16:57:58.577 00:00:12.403 TCP 1.101.0.1:3000 -> 23.104.0.1:51922 10 6452 1 Summary: total flows: 136, total bytes: 410633, total packets: 1012, avg bps: 853, avg pps: 0, avg bpp: 405 Time window: 2025-11-20 15:54:03 - 2025-11-20 16:58:10 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0020s Wall: 0.0024s flows/second: 56266.1 Runtime: 0.0024s