Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 02:59:05.049 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50854 10 6661 1 2025-11-21 03:00:05.453 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33608 10 6661 1 2025-11-21 03:00:36.008 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:00:36.000 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:00:35.981 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:00:36.035 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:00:36.118 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 02:57:03.859 00:05:00.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:01:05.854 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35816 10 6661 1 2025-11-21 03:02:06.271 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60148 10 6661 1 2025-11-21 02:59:03.858 00:05:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:03:06.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58228 10 6661 1 2025-11-21 03:04:07.117 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6661 1 2025-11-21 03:05:07.478 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6661 1 2025-11-21 03:05:36.336 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:05:36.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:05:36.247 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:05:36.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:05:36.136 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:06:07.833 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:35478 10 6661 1 2025-11-21 03:03:03.859 00:05:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:07:08.221 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57924 10 6661 1 2025-11-21 03:08:08.621 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 12 10787 1 2025-11-21 03:05:03.858 00:05:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:09:09.110 00:00:11.606 TCP 1.101.0.1:3000 -> 23.104.0.1:37914 10 6870 1 2025-11-21 03:10:10.797 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6870 1 2025-11-21 03:10:36.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:10:35.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:10:36.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:10:36.340 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:10:36.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:11:11.211 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6870 1 2025-11-21 03:12:11.616 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57470 10 6870 1 2025-11-21 03:09:03.864 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:13:12.024 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57280 10 6870 1 2025-11-21 03:14:12.427 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6870 1 2025-11-21 03:11:03.862 00:05:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:15:12.830 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60802 10 6870 1 2025-11-21 03:15:36.281 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:15:36.433 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:15:36.288 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:15:36.284 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:15:36.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:16:13.195 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55704 10 6870 1 2025-11-21 03:17:13.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42410 10 6870 1 2025-11-21 03:18:13.998 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39610 10 6870 1 2025-11-21 03:15:03.864 00:05:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:19:14.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51740 10 6870 1 2025-11-21 03:20:14.760 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43418 10 6870 1 2025-11-21 03:20:36.529 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:20:36.374 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:20:36.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:20:36.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:20:36.464 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:17:03.862 00:05:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:21:15.185 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:58100 10 6870 1 2025-11-21 03:22:15.582 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59648 10 6870 1 2025-11-21 03:23:16.009 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37300 10 6870 1 2025-11-21 03:24:16.410 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6870 1 2025-11-21 03:21:03.865 00:05:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:25:16.823 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37896 10 6870 1 2025-11-21 03:25:36.647 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:25:36.486 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:25:36.608 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:25:36.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:25:36.476 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:26:17.232 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33342 10 6870 1 2025-11-21 03:23:03.864 00:05:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:27:17.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 10 6870 1 2025-11-21 03:28:18.037 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36274 10 6870 1 2025-11-21 03:29:18.441 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34616 10 6870 1 2025-11-21 03:30:18.805 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:42526 10 6870 1 2025-11-21 03:30:36.696 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:30:36.650 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:30:36.521 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:30:36.694 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:30:36.778 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:27:03.866 00:05:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:31:19.182 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53000 10 6870 1 2025-11-21 03:32:19.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6870 1 2025-11-21 03:29:03.864 00:05:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:33:19.996 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 10 6870 1 2025-11-21 03:34:20.367 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42796 10 6870 1 2025-11-21 03:35:20.732 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48264 10 6870 1 2025-11-21 03:35:36.827 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:35:36.713 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:35:36.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:35:36.827 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:35:36.911 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:36:21.145 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6870 1 2025-11-21 03:33:03.870 00:05:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:37:21.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43422 10 6870 1 2025-11-21 03:38:21.914 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41034 10 6870 1 2025-11-21 03:35:03.868 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:39:22.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42178 10 6870 1 2025-11-21 03:40:22.717 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39596 10 6870 1 2025-11-21 03:40:36.761 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:40:36.811 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:40:36.846 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:40:36.983 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:40:36.930 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:41:23.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37206 10 6870 1 2025-11-21 03:42:23.505 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44866 10 6870 1 2025-11-21 03:39:03.875 00:05:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:43:23.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6870 1 2025-11-21 03:44:24.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46896 10 6870 1 2025-11-21 03:41:03.873 00:05:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:45:36.885 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:45:36.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:45:36.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:45:24.714 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51188 10 6870 1 2025-11-21 03:45:36.873 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:45:36.956 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:46:25.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60682 10 6870 1 2025-11-21 03:47:25.522 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 10 6870 1 2025-11-21 03:48:25.923 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33014 10 6870 1 2025-11-21 03:45:03.880 00:05:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:49:26.346 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 10 6870 1 2025-11-21 03:50:36.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:50:26.711 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36996 10 6870 1 2025-11-21 03:50:37.106 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:50:37.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:50:36.998 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:50:37.082 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:47:03.878 00:05:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:51:27.115 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6870 1 2025-11-21 03:52:27.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37038 10 6870 1 2025-11-21 03:53:27.924 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:60070 10 6870 1 2025-11-21 03:54:28.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33182 10 6870 1 2025-11-21 03:51:03.882 00:05:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 03:55:37.322 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 03:55:37.236 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 03:55:37.230 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 03:55:37.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:55:37.238 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 03:55:28.773 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6870 1 2025-11-21 03:56:29.146 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34716 10 6870 1 2025-11-21 03:53:03.881 00:05:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 03:57:29.552 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54850 10 6870 1 2025-11-21 03:58:29.913 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38274 10 6870 1 Summary: total flows: 140, total bytes: 444116, total packets: 1022, avg bps: 961, avg pps: 0, avg bpp: 434 Time window: 2025-11-21 02:57:03 - 2025-11-21 03:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0019s Wall: 0.0038s flows/second: 36479.0 Runtime: 0.0039s