Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 06:58:45.517 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36846 10 6452 1 2025-11-21 06:59:45.882 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43300 12 6556 1 2025-11-21 07:00:40.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:00:40.762 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:00:40.679 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:00:40.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:00:40.984 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:00:46.306 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-11-21 06:57:03.937 00:05:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:01:46.668 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-11-21 07:02:47.095 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41644 10 6452 1 2025-11-21 06:59:03.934 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:03:47.464 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-11-21 07:04:47.866 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41258 10 6452 1 2025-11-21 07:05:40.743 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:05:40.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:05:40.824 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:05:40.856 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:05:40.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:05:48.292 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33418 10 6452 1 2025-11-21 07:06:48.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52140 10 6452 1 2025-11-21 07:03:03.936 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:07:49.138 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-11-21 07:08:49.540 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6452 1 2025-11-21 07:05:03.937 00:05:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:09:49.950 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50172 10 6452 1 2025-11-21 07:10:41.003 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:10:41.110 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:10:40.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:10:41.059 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:10:41.191 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:10:50.370 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53450 10 6452 1 2025-11-21 07:11:50.787 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39984 10 6452 1 2025-11-21 07:12:51.154 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-21 07:09:03.940 00:05:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:13:51.558 00:00:11.604 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-11-21 07:14:53.202 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42534 10 6452 1 2025-11-21 07:11:03.940 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:15:41.184 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:15:41.228 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:15:41.255 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:15:41.227 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:15:41.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:15:53.605 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54688 10 6452 1 2025-11-21 07:16:54.008 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41344 10 6452 1 2025-11-21 07:17:54.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38516 10 6452 1 2025-11-21 07:15:03.942 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:18:54.804 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58988 10 6452 1 2025-11-21 07:19:55.212 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-21 07:20:41.310 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:20:41.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:20:41.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:20:41.253 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:20:41.226 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:17:03.939 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:20:55.617 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32926 10 6452 1 2025-11-21 07:21:56.016 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58192 10 6452 1 2025-11-21 07:22:56.420 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-11-21 07:23:56.827 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-11-21 07:21:03.943 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:24:57.195 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35054 10 6452 1 2025-11-21 07:25:41.181 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:25:41.436 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:25:41.458 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:25:41.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:25:41.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:25:57.605 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-11-21 07:23:03.940 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:26:57.968 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45872 10 6452 1 2025-11-21 07:27:58.371 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 12 10369 1 2025-11-21 07:28:58.860 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6452 1 2025-11-21 07:29:59.280 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34808 10 6452 1 2025-11-21 07:30:41.530 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:30:41.536 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:30:41.247 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:30:41.524 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:30:41.607 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:27:03.947 00:05:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:30:59.682 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-11-21 07:32:00.119 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-11-21 07:29:03.944 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:33:00.536 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43122 10 6452 1 2025-11-21 07:34:00.902 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-11-21 07:35:01.267 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6452 1 2025-11-21 07:35:41.762 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:35:41.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:35:41.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:35:41.407 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:35:41.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:36:01.659 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54208 10 6452 1 2025-11-21 07:33:03.948 00:05:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:37:02.090 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57254 10 6452 1 2025-11-21 07:38:02.496 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 12 10375 1 2025-11-21 07:35:03.951 00:05:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:39:02.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45730 10 6452 1 2025-11-21 07:40:03.385 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42426 10 6452 1 2025-11-21 07:40:42.904 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:40:43.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:40:43.100 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:40:43.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:40:43.430 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:41:03.786 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41758 10 6452 1 2025-11-21 07:42:04.188 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-11-21 07:39:03.955 00:05:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:43:04.546 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-21 07:44:04.945 00:00:19.022 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 10 6452 1 2025-11-21 07:41:03.953 00:05:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:45:14.008 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-11-21 07:45:41.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:45:41.813 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:45:41.612 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:45:41.612 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:45:41.898 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:46:14.411 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40794 10 6452 1 2025-11-21 07:47:14.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-11-21 07:48:15.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 10 6452 1 2025-11-21 07:45:03.957 00:05:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:49:15.621 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55054 10 6452 1 2025-11-21 07:50:16.023 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-11-21 07:50:41.921 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:50:41.934 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:50:41.857 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:50:41.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:50:41.839 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:47:03.953 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:51:16.422 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42988 10 6452 1 2025-11-21 07:52:16.785 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53236 10 6452 1 2025-11-21 07:53:17.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39460 10 6452 1 2025-11-21 07:54:17.593 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 2025-11-21 07:51:03.956 00:05:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:55:18.001 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-11-21 07:55:42.222 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:55:42.143 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:55:42.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:55:41.987 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:55:42.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:56:18.401 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-11-21 07:53:03.955 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:57:18.768 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50052 10 6452 1 2025-11-21 07:58:19.173 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 922, avg pps: 0, avg bpp: 414 Time window: 2025-11-21 06:57:03 - 2025-11-21 07:58:29 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0052s User: 0.0015s Wall: 0.0024s flows/second: 59499.7 Runtime: 0.0024s