Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 09:59:21.373 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59236 10 6452 1 2025-11-21 09:56:03.986 00:05:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:00:21.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46234 10 6452 1 2025-11-21 10:00:44.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:00:44.507 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:00:44.456 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:00:44.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:00:44.567 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:59:03.984 00:02:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-21 10:01:22.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56824 10 6452 1 2025-11-21 10:02:22.565 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40694 10 6452 1 2025-11-21 10:03:22.972 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-21 10:04:23.337 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41200 10 6452 1 2025-11-21 10:02:03.986 00:03:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-11-21 10:05:23.696 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40308 10 6452 1 2025-11-21 10:05:44.598 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:05:44.931 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:05:44.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:05:44.702 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:05:44.785 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:02:03.985 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:06:24.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42492 10 6452 1 2025-11-21 10:07:24.522 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-11-21 10:08:24.888 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:48694 10 6452 1 2025-11-21 10:09:25.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38768 10 6452 1 2025-11-21 10:06:03.988 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:10:25.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60182 10 6452 1 2025-11-21 10:10:44.850 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:10:44.566 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:10:44.766 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:10:44.624 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:10:44.724 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:11:26.134 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-11-21 10:08:03.985 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:12:26.534 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50116 10 6452 1 2025-11-21 10:13:26.930 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47250 10 6452 1 2025-11-21 10:14:27.340 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53032 10 6452 1 2025-11-21 10:15:27.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42384 10 6452 1 2025-11-21 10:15:44.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:15:44.818 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:15:44.630 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:15:44.895 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:15:44.977 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:12:03.989 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:16:28.147 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45640 10 6452 1 2025-11-21 10:17:28.549 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39670 10 6452 1 2025-11-21 10:14:03.987 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:18:28.947 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36888 10 6452 1 2025-11-21 10:19:29.359 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49134 10 6452 1 2025-11-21 10:20:44.801 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:20:44.922 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:20:44.806 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:20:44.836 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:20:29.718 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44466 10 6452 1 2025-11-21 10:20:44.883 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:21:30.127 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-11-21 10:18:03.992 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:22:30.530 00:00:10.907 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6452 1 2025-11-21 10:23:31.472 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:60524 12 10369 1 2025-11-21 10:20:03.991 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:24:31.953 00:00:11.459 TCP 1.101.0.1:3000 -> 23.104.0.1:33900 10 6452 1 2025-11-21 10:25:44.719 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:25:33.450 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52240 10 6452 1 2025-11-21 10:25:45.076 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:25:45.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:25:45.074 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:25:44.993 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:26:33.851 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58894 10 6452 1 2025-11-21 10:27:34.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60372 10 6452 1 2025-11-21 10:24:03.993 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:28:34.679 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47244 10 6452 1 2025-11-21 10:29:35.116 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41600 10 6452 1 2025-11-21 10:26:03.991 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:30:44.945 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:30:44.895 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:30:45.169 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:30:35.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45322 10 6452 1 2025-11-21 10:30:45.007 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:30:45.089 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:31:35.933 00:00:15.986 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 10 6452 1 2025-11-21 10:32:42.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41246 10 6452 1 2025-11-21 10:33:42.406 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56168 10 6452 1 2025-11-21 10:30:03.993 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:34:42.812 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37344 10 6452 1 2025-11-21 10:35:45.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:35:45.212 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:35:45.011 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:35:45.088 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:35:45.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:35:43.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48852 10 6452 1 2025-11-21 10:32:03.993 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:36:43.618 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40728 10 6452 1 2025-11-21 10:36:03.996 00:01:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-21 10:37:44.021 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35228 10 6452 1 2025-11-21 10:38:44.418 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37258 10 6452 1 2025-11-21 10:39:44.833 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:44160 10 6452 1 2025-11-21 10:40:45.467 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:40:45.088 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:40:45.264 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:40:45.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:40:45.384 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:40:45.262 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48282 10 6452 1 2025-11-21 10:41:45.659 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45782 10 6452 1 2025-11-21 10:38:03.994 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:38:03.997 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:42:46.100 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-11-21 10:43:46.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43408 10 6452 1 2025-11-21 10:44:46.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-11-21 10:45:45.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:45:45.504 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:45:45.629 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:45:45.535 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:45:45.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:45:47.323 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60208 10 6452 1 2025-11-21 10:46:47.738 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 12 6556 1 2025-11-21 10:47:48.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36766 10 6452 1 2025-11-21 10:44:03.997 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 10:44:03.996 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:48:48.548 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55232 10 6452 1 2025-11-21 10:49:48.970 00:00:12.963 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-11-21 10:50:45.506 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:50:45.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:50:45.493 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:50:45.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:50:45.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:50:52.002 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44434 10 6452 1 2025-11-21 10:51:52.417 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49800 10 6452 1 2025-11-21 10:52:52.828 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53602 10 6452 1 2025-11-21 10:50:03.996 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:53:53.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40088 10 6452 1 2025-11-21 10:50:04.000 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-21 10:54:53.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51858 10 6452 1 2025-11-21 10:55:45.664 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 10:55:45.503 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 10:55:45.612 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:55:45.667 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 10:55:45.749 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:55:54.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45082 10 6452 1 2025-11-21 10:56:54.443 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34564 10 6452 1 2025-11-21 10:57:54.851 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 10 6452 1 Summary: total flows: 140, total bytes: 414252, total packets: 1009, avg bps: 890, avg pps: 0, avg bpp: 410 Time window: 2025-11-21 09:56:03 - 2025-11-21 10:58:05 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0034s User: 0.0026s Wall: 0.0022s flows/second: 64105.1 Runtime: 0.0022s