Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 03:59:30.281 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6870 1 2025-11-21 04:00:37.519 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:00:37.476 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:00:37.191 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:00:37.003 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:00:37.437 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:00:31.065 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60418 10 6870 1 2025-11-21 03:57:03.884 00:05:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:01:31.476 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6870 1 2025-11-21 04:02:31.874 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6870 1 2025-11-21 03:59:03.881 00:05:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:03:32.240 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6870 1 2025-11-21 04:04:32.601 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6870 1 2025-11-21 04:05:37.533 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:05:37.224 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:05:37.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:05:37.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:05:37.450 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:05:33.008 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6870 1 2025-11-21 04:06:33.415 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6870 1 2025-11-21 04:03:03.884 00:05:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:07:33.823 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:50186 12 10375 1 2025-11-21 04:08:34.309 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48770 10 6452 1 2025-11-21 04:05:03.882 00:05:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:09:34.714 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46042 10 6452 1 2025-11-21 04:10:37.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:10:37.546 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:10:37.423 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:10:37.645 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:10:37.564 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:10:35.123 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-11-21 04:11:35.532 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-11-21 04:12:35.897 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-11-21 04:09:03.885 00:05:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:13:36.307 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-11-21 04:14:36.731 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-11-21 04:11:03.883 00:05:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:15:37.859 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:15:37.709 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:15:37.650 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:15:37.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:15:37.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:15:37.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44358 10 6452 1 2025-11-21 04:16:37.544 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47688 10 6452 1 2025-11-21 04:17:37.955 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-11-21 04:18:38.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-11-21 04:15:03.888 00:05:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:19:38.759 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38236 10 6452 1 2025-11-21 04:20:37.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:20:37.881 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:20:37.836 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:20:37.730 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:20:37.790 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:20:39.189 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 2025-11-21 04:17:03.886 00:05:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:21:39.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46602 12 6556 1 2025-11-21 04:22:39.950 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58492 10 6452 1 2025-11-21 04:23:40.373 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56568 10 6452 1 2025-11-21 04:24:40.781 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39664 10 6452 1 2025-11-21 04:21:03.889 00:05:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:25:37.925 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:25:37.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:25:37.659 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:25:37.862 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:25:37.843 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:25:41.196 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55986 10 6452 1 2025-11-21 04:26:41.602 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-11-21 04:23:03.890 00:05:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:27:41.963 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-11-21 04:28:42.364 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51600 10 6452 1 2025-11-21 04:29:42.781 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-11-21 04:30:37.962 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:30:37.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:30:37.881 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:30:37.660 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:30:37.881 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:30:43.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54720 10 6452 1 2025-11-21 04:27:03.893 00:05:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:31:43.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-11-21 04:32:43.995 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60600 10 6452 1 2025-11-21 04:29:03.891 00:05:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:33:44.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-11-21 04:34:44.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56018 10 6452 1 2025-11-21 04:35:38.149 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:35:37.797 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:35:37.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:35:37.664 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:35:38.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:35:45.211 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47648 10 6452 1 2025-11-21 04:36:45.614 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54010 10 6452 1 2025-11-21 04:33:03.895 00:05:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:37:46.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6452 1 2025-11-21 04:38:46.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-11-21 04:35:03.894 00:05:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:39:46.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57862 10 6452 1 2025-11-21 04:40:37.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:40:37.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:40:38.179 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:40:37.837 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:40:38.261 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:40:47.230 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-11-21 04:41:47.633 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-21 04:42:47.996 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46776 10 6452 1 2025-11-21 04:39:03.899 00:05:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:43:48.411 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-11-21 04:44:48.816 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-11-21 04:41:03.897 00:05:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:45:38.389 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:45:38.241 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:45:38.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:45:37.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:45:38.306 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:45:49.224 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34816 10 6452 1 2025-11-21 04:46:49.644 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50922 10 6452 1 2025-11-21 04:47:50.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-11-21 04:45:03.899 00:05:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:48:50.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33124 10 6452 1 2025-11-21 04:49:50.866 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47824 10 6452 1 2025-11-21 04:50:38.253 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:50:38.264 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:50:38.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:50:38.179 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:50:38.262 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:50:51.231 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46902 10 6452 1 2025-11-21 04:47:03.898 00:05:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:51:51.631 00:00:11.033 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-11-21 04:52:52.705 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34860 10 6452 1 2025-11-21 04:53:53.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-21 04:51:03.901 00:05:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:54:53.514 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-11-21 04:55:38.435 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:55:38.549 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:55:38.561 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:55:38.320 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:55:38.403 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:55:53.884 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-11-21 04:56:54.288 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-11-21 04:53:03.899 00:05:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:57:54.686 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55968 10 6452 1 Summary: total flows: 139, total bytes: 417919, total packets: 1014, avg bps: 913, avg pps: 0, avg bpp: 412 Time window: 2025-11-21 03:57:03 - 2025-11-21 04:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0018s Wall: 0.0062s flows/second: 22386.4 Runtime: 0.0062s