Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 19:59:27.102 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6452 1 2025-11-20 20:00:27.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:00:27.552 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:00:27.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:00:27.714 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:00:27.796 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:00:27.505 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34552 10 6452 1 2025-11-20 19:57:03.716 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:01:27.903 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 12 6556 1 2025-11-20 20:02:28.313 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34114 10 6452 1 2025-11-20 19:59:03.715 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:03:28.713 00:00:10.663 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-11-20 20:04:29.416 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-11-20 20:05:27.731 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:05:27.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:05:27.561 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:05:27.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:05:27.647 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:05:29.887 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:58132 10 6452 1 2025-11-20 20:06:30.266 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-11-20 20:03:03.718 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:07:30.677 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-11-20 20:08:31.102 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-11-20 20:05:03.715 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:09:31.465 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-11-20 20:10:27.904 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:10:27.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:10:27.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:10:27.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:10:27.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:10:31.826 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33934 10 6452 1 2025-11-20 20:11:32.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-11-20 20:12:32.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33100 10 6452 1 2025-11-20 20:09:03.718 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:13:33.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45514 10 6452 1 2025-11-20 20:14:33.442 00:00:20.052 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-11-20 20:11:03.716 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:15:28.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:15:28.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:15:27.936 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:15:28.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:15:28.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:15:43.529 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33540 10 6452 1 2025-11-20 20:16:43.929 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38608 10 6452 1 2025-11-20 20:17:44.354 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 10 6452 1 2025-11-20 20:18:44.714 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51836 10 6452 1 2025-11-20 20:15:03.719 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:19:45.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-11-20 20:20:28.004 00:00:00.048 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:20:27.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:20:28.012 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:20:27.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:20:28.087 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:20:45.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-11-20 20:17:03.717 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:21:45.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-20 20:22:46.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35054 10 6452 1 2025-11-20 20:23:46.718 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-11-20 20:24:47.137 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36304 10 6452 1 2025-11-20 20:21:03.720 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:25:28.096 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:25:28.283 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:25:27.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:25:28.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:25:28.015 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:25:47.543 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47994 10 6452 1 2025-11-20 20:26:47.903 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 12 6556 1 2025-11-20 20:23:03.720 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:27:48.309 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-11-20 20:28:48.720 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57126 10 6452 1 2025-11-20 20:29:49.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-11-20 20:30:28.166 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:30:28.074 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:30:28.231 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:30:28.284 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:30:28.313 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:30:49.534 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58896 10 6452 1 2025-11-20 20:27:03.723 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:31:49.901 00:00:10.735 TCP 1.101.0.1:3000 -> 23.104.0.1:41680 10 6452 1 2025-11-20 20:32:50.688 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48286 10 6452 1 2025-11-20 20:29:03.720 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:33:51.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45152 10 6452 1 2025-11-20 20:34:51.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-11-20 20:35:28.590 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:35:28.420 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:35:28.427 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:35:28.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:35:28.506 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:35:51.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50134 10 6452 1 2025-11-20 20:36:52.312 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-11-20 20:33:03.727 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:37:52.689 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-11-20 20:38:53.059 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-11-20 20:35:03.724 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:39:53.463 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53082 10 6452 1 2025-11-20 20:40:28.705 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:40:28.393 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:40:28.574 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:40:28.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:40:28.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:40:53.863 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-11-20 20:41:54.287 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-11-20 20:39:03.728 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:42:54.691 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36144 10 6452 1 2025-11-20 20:43:55.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-11-20 20:41:03.734 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:44:55.513 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48096 10 6452 1 2025-11-20 20:45:28.346 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:45:28.464 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:45:28.606 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:45:28.639 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:45:28.721 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:45:55.917 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:49984 10 6452 1 2025-11-20 20:46:56.347 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:44028 10 6452 1 2025-11-20 20:47:56.705 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56998 10 6452 1 2025-11-20 20:45:03.736 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:48:57.094 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35930 10 6452 1 2025-11-20 20:49:57.497 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-11-20 20:50:28.683 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:50:28.598 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:50:28.785 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:50:28.640 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:50:28.600 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:47:03.734 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:50:57.904 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-11-20 20:51:58.280 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6452 1 2025-11-20 20:52:58.681 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57082 10 6452 1 2025-11-20 20:53:59.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37656 10 6452 1 2025-11-20 20:51:03.738 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:54:59.512 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-11-20 20:55:28.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:55:28.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:55:28.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:55:29.054 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:55:28.942 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:55:59.914 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38208 10 6452 1 2025-11-20 20:53:03.737 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:57:00.276 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45986 10 6452 1 2025-11-20 20:58:00.643 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44014 10 6452 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 896, avg pps: 0, avg bpp: 405 Time window: 2025-11-20 19:57:03 - 2025-11-20 20:58:11 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0046s User: 0.0009s Wall: 0.0024s flows/second: 58800.6 Runtime: 0.0024s