Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 20:59:01.087 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-11-20 21:00:01.452 00:00:22.580 TCP 1.101.0.1:3000 -> 23.104.0.1:58154 10 6452 1 2025-11-20 21:00:28.887 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:00:28.846 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:00:28.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:00:28.935 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:00:29.018 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:57:03.740 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:01:14.110 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-11-20 21:02:14.474 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-11-20 20:59:03.738 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:03:14.832 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-11-20 21:04:15.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59330 10 6452 1 2025-11-20 21:05:28.975 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:05:28.891 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:05:15.624 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41678 10 6452 1 2025-11-20 21:05:28.754 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:05:28.740 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:05:28.778 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:06:16.022 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56848 10 6452 1 2025-11-20 21:03:03.741 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:07:16.435 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39974 10 6452 1 2025-11-20 21:08:16.828 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44102 10 6452 1 2025-11-20 21:05:03.738 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:09:17.229 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59958 10 6452 1 2025-11-20 21:10:29.297 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:10:29.268 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:10:29.205 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:10:17.632 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-20 21:10:29.160 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:10:29.242 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:11:18.036 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6452 1 2025-11-20 21:12:18.400 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6452 1 2025-11-20 21:09:03.742 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:13:18.800 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47350 10 6452 1 2025-11-20 21:14:19.179 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-11-20 21:11:03.739 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:15:29.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:15:29.081 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:15:19.546 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46260 10 6452 1 2025-11-20 21:15:29.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:15:29.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:15:29.188 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:16:19.943 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55154 10 6452 1 2025-11-20 21:17:20.313 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-11-20 21:18:20.719 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 11 6492 1 2025-11-20 21:15:03.743 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:19:21.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37118 10 6452 1 2025-11-20 21:20:29.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:20:29.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:20:29.128 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:20:29.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:20:29.249 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:20:21.543 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 10 6452 1 2025-11-20 21:17:03.741 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:21:21.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 10 6452 1 2025-11-20 21:22:22.402 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53748 10 6452 1 2025-11-20 21:23:22.769 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-11-20 21:24:23.191 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 10 6452 1 2025-11-20 21:21:03.748 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:25:29.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:25:30.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:25:30.308 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:25:23.602 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-11-20 21:25:30.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:25:30.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:26:23.974 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6452 1 2025-11-20 21:23:03.747 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:27:24.391 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59186 10 6452 1 2025-11-20 21:28:24.794 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:43066 10 6452 1 2025-11-20 21:29:25.168 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47074 10 6452 1 2025-11-20 21:30:29.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:30:29.419 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:30:29.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:30:29.320 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:30:29.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:30:25.570 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 10 6452 1 2025-11-20 21:27:03.754 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:31:25.982 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37780 10 6452 1 2025-11-20 21:32:26.385 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-11-20 21:29:03.751 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:33:26.795 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60104 10 6452 1 2025-11-20 21:34:27.202 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-11-20 21:35:29.515 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:35:29.528 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:35:29.492 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:35:29.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:35:29.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:35:27.567 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53800 10 6452 1 2025-11-20 21:36:27.930 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:35402 10 6452 1 2025-11-20 21:33:03.754 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:37:28.437 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-11-20 21:38:28.838 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:33182 10 6452 1 2025-11-20 21:35:03.753 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:39:29.221 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 10 6452 1 2025-11-20 21:40:29.594 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:40:29.612 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:40:29.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:40:29.679 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:40:29.514 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:40:29.620 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-11-20 21:41:30.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-11-20 21:42:30.427 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42868 10 6452 1 2025-11-20 21:39:03.755 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:43:30.833 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-11-20 21:44:31.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52500 10 6452 1 2025-11-20 21:41:03.753 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:45:29.963 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:45:29.734 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:45:29.867 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:45:29.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:45:30.045 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:45:31.684 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-11-20 21:46:32.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52034 10 6452 1 2025-11-20 21:47:32.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6452 1 2025-11-20 21:48:32.920 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:56546 10 6452 1 2025-11-20 21:45:03.756 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:49:33.307 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55168 10 6452 1 2025-11-20 21:50:29.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:50:29.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:50:29.624 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:50:29.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:50:29.979 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:50:33.672 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49728 10 6452 1 2025-11-20 21:47:03.754 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:51:34.054 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6452 1 2025-11-20 21:52:34.454 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-11-20 21:53:34.832 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-11-20 21:54:35.193 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-11-20 21:51:03.759 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:55:29.863 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:55:29.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:55:29.901 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:55:30.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:55:29.985 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:55:35.597 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-11-20 21:56:36.003 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:42800 10 6452 1 2025-11-20 21:53:03.757 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:57:36.402 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:49886 12 10375 1 2025-11-20 21:58:36.887 00:00:10.915 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 Summary: total flows: 140, total bytes: 420963, total packets: 1023, avg bps: 909, avg pps: 0, avg bpp: 411 Time window: 2025-11-20 20:57:03 - 2025-11-20 21:58:47 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0026s Wall: 0.0027s flows/second: 52588.4 Runtime: 0.0027s