Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 10:58:55.266 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47594 10 6452 1 2025-11-21 10:56:03.998 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 10:59:55.665 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-11-21 11:00:45.835 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:00:45.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:00:45.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:00:45.700 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:00:45.783 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 10:56:04.324 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-21 11:00:56.095 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56642 10 6452 1 2025-11-21 11:01:56.498 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42270 10 6452 1 2025-11-21 11:02:56.908 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51210 10 6452 1 2025-11-21 11:03:57.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38232 10 6452 1 2025-11-21 11:02:04.000 00:03:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 8 492 1 2025-11-21 11:04:57.721 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-11-21 11:05:45.971 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:05:46.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:05:46.480 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:05:46.136 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:05:45.889 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:05:58.106 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58078 10 6452 1 2025-11-21 11:06:58.508 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 10 6452 1 2025-11-21 11:03:04.004 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 11:07:58.921 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53176 10 6452 1 2025-11-21 11:08:59.322 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:47306 10 6452 1 2025-11-21 11:09:59.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37424 10 6452 1 2025-11-21 11:10:45.818 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:10:45.884 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:10:45.710 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:10:45.883 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:10:45.966 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:06:04.002 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 11:11:00.109 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6452 1 2025-11-21 11:12:00.469 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57112 10 6452 1 2025-11-21 11:13:00.869 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37294 10 6452 1 2025-11-21 11:10:04.005 00:04:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 11:14:01.232 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-11-21 11:15:01.633 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6452 1 2025-11-21 11:15:45.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:15:45.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:15:45.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:15:45.868 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:15:45.952 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:16:02.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48542 10 6452 1 2025-11-21 11:17:02.407 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:41416 10 6452 1 2025-11-21 11:13:04.009 00:06:00.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-11-21 11:18:02.858 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-11-21 11:19:03.279 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49724 10 6452 1 2025-11-21 11:15:04.024 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 11:20:03.640 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36470 10 6452 1 2025-11-21 11:20:46.081 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:20:46.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:20:45.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:20:46.079 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:20:46.162 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:21:04.042 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33972 10 6452 1 2025-11-21 11:22:04.449 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6452 1 2025-11-21 11:23:04.853 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46072 10 6452 1 2025-11-21 11:19:04.336 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-11-21 11:24:05.271 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44078 10 6452 1 2025-11-21 11:25:05.668 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56280 10 6452 1 2025-11-21 11:25:46.052 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:25:46.525 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:25:46.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:25:46.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:25:46.460 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:26:06.096 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47646 10 6452 1 2025-11-21 11:22:04.038 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-11-21 11:27:06.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33654 10 6452 1 2025-11-21 11:28:06.881 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33368 10 6452 1 2025-11-21 11:29:07.238 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49258 10 6452 1 2025-11-21 11:30:07.636 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34588 10 6452 1 2025-11-21 11:30:46.330 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:30:46.337 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:30:46.072 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:30:46.390 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:30:46.473 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:26:04.038 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 11:31:08.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55310 10 6452 1 2025-11-21 11:32:08.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44060 10 6452 1 2025-11-21 11:28:04.334 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-11-21 11:33:08.846 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:45392 11 6504 1 2025-11-21 11:34:09.319 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6452 1 2025-11-21 11:35:09.676 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 10 6452 1 2025-11-21 11:35:46.438 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:35:46.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:35:46.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:35:46.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:35:46.445 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:36:10.493 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-11-21 11:33:04.041 00:04:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 11:37:10.900 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-11-21 11:38:11.300 00:00:10.843 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-21 11:39:12.182 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48642 10 6452 1 2025-11-21 11:35:04.044 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 11:40:12.588 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43120 10 6452 1 2025-11-21 11:40:46.385 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:40:46.474 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:40:46.355 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:40:46.385 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:40:46.467 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:41:13.002 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-11-21 11:38:04.042 00:04:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 11:42:13.433 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33030 10 6452 1 2025-11-21 11:43:13.837 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:44740 10 6452 1 2025-11-21 11:44:14.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60590 10 6452 1 2025-11-21 11:45:14.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 12 6556 1 2025-11-21 11:45:46.512 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:45:46.437 00:00:00.019 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:45:46.569 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:45:46.580 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:45:46.665 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:42:04.046 00:04:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 11:46:15.096 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-11-21 11:43:04.044 00:04:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 11:47:15.504 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58584 10 6452 1 2025-11-21 11:48:15.908 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-11-21 11:49:16.316 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-11-21 11:50:17.074 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 10 6452 1 2025-11-21 11:50:46.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:50:46.530 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:50:46.662 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:50:46.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:50:46.744 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:47:04.046 00:04:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 11:51:17.436 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-11-21 11:52:17.838 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51014 10 6452 1 2025-11-21 11:48:04.045 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 11:53:18.262 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60552 10 6452 1 2025-11-21 11:54:18.630 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37006 10 6452 1 2025-11-21 11:55:19.028 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-11-21 11:55:46.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:55:46.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 11:55:46.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 11:55:46.678 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 11:55:46.949 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 11:56:19.437 00:00:10.729 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-11-21 11:52:04.047 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 11:57:20.205 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36802 10 6452 1 2025-11-21 11:58:20.601 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59348 10 6452 1 Summary: total flows: 140, total bytes: 417350, total packets: 1026, avg bps: 891, avg pps: 0, avg bpp: 406 Time window: 2025-11-21 10:56:03 - 2025-11-21 11:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0043s User: 0.0011s Wall: 0.0020s flows/second: 69237.4 Runtime: 0.0020s