Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 14:58:40.061 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42762 10 6452 1 2025-11-21 14:55:04.117 00:04:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 14:59:40.477 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59330 10 6452 1 2025-11-21 15:00:50.492 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:00:40.877 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 10 6452 1 2025-11-21 15:00:50.622 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:00:50.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:00:50.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:00:50.639 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:01:41.281 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60734 10 6452 1 2025-11-21 15:02:41.653 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40236 10 6452 1 2025-11-21 14:59:04.121 00:04:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:03:42.102 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-11-21 15:00:04.118 00:04:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:04:42.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35792 10 6452 1 2025-11-21 15:05:50.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:05:50.379 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:05:50.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:05:42.910 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 10 6452 1 2025-11-21 15:05:50.628 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:05:50.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:06:43.316 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-11-21 15:07:43.717 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33646 10 6452 1 2025-11-21 15:04:04.122 00:04:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:08:44.129 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41174 10 6452 1 2025-11-21 15:05:04.117 00:04:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:09:44.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-11-21 15:10:50.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:10:50.686 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:10:50.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:10:50.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:10:51.018 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:10:44.940 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60124 10 6452 1 2025-11-21 15:11:45.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-11-21 15:12:45.762 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51976 10 6452 1 2025-11-21 15:09:04.122 00:04:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:13:46.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46536 10 6452 1 2025-11-21 15:14:46.532 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60422 10 6452 1 2025-11-21 15:10:04.120 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 15:15:50.965 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:15:50.827 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:15:50.826 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:15:50.780 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:15:50.882 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:15:46.897 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52794 10 6452 1 2025-11-21 15:16:47.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35538 10 6452 1 2025-11-21 15:17:47.671 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:46770 12 10375 1 2025-11-21 15:18:48.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6452 1 2025-11-21 15:14:04.124 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 15:19:48.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42080 10 6452 1 2025-11-21 15:20:50.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:20:50.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:20:50.697 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:20:50.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:20:50.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:20:48.918 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35436 10 6452 1 2025-11-21 15:17:04.123 00:04:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:21:49.286 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37240 10 6452 1 2025-11-21 15:22:49.689 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 12 10369 1 2025-11-21 15:23:50.173 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39066 10 6452 1 2025-11-21 15:21:04.126 00:04:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:24:50.591 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58514 10 6452 1 2025-11-21 15:25:50.994 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:25:51.114 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:25:50.928 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:25:50.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:25:50.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:25:50.950 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46582 10 6452 1 2025-11-21 15:22:04.123 00:04:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:26:51.358 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43830 10 6452 1 2025-11-21 15:27:51.741 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37790 10 6452 1 2025-11-21 15:28:52.146 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37878 10 6452 1 2025-11-21 15:26:04.128 00:04:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:29:52.550 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60198 10 6452 1 2025-11-21 15:30:50.786 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:30:50.813 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:30:50.789 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:30:50.765 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:30:50.872 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:27:04.126 00:04:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:30:52.956 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58002 10 6452 1 2025-11-21 15:31:53.374 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-11-21 15:32:53.740 00:00:10.670 TCP 1.101.0.1:3000 -> 23.104.0.1:58286 10 6452 1 2025-11-21 15:33:54.455 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50688 10 6452 1 2025-11-21 15:31:04.129 00:04:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:34:54.857 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47682 10 6452 1 2025-11-21 15:35:51.245 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:35:51.040 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:35:51.285 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:35:51.113 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:35:51.369 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:32:04.128 00:04:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:35:55.228 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40448 10 6452 1 2025-11-21 15:36:55.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44484 10 6452 1 2025-11-21 15:37:55.989 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57166 10 6452 1 2025-11-21 15:38:56.391 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36236 10 6452 1 2025-11-21 15:36:04.131 00:04:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:39:56.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56866 10 6452 1 2025-11-21 15:40:51.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:40:51.427 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:40:51.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:40:51.502 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:40:51.377 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:37:04.127 00:04:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:40:57.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53154 10 6452 1 2025-11-21 15:41:57.611 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-11-21 15:42:58.012 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 10 6452 1 2025-11-21 15:43:58.424 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-11-21 15:41:04.130 00:04:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:44:58.834 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-11-21 15:45:51.862 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:45:51.760 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:45:51.715 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:45:51.763 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:45:51.845 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:45:59.250 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:58812 11 6504 1 2025-11-21 15:42:04.128 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 15:46:59.702 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 10 6452 1 2025-11-21 15:48:00.116 00:00:11.845 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 12 10375 1 2025-11-21 15:49:02.004 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-11-21 15:50:02.362 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-11-21 15:50:51.501 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:50:51.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:50:51.458 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:50:51.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:50:51.651 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:46:04.131 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 15:51:02.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53526 10 6452 1 2025-11-21 15:52:03.131 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 2025-11-21 15:49:04.130 00:04:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:53:03.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-11-21 15:54:03.945 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6452 1 2025-11-21 15:55:04.343 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47732 10 6452 1 2025-11-21 15:55:51.712 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 15:55:51.700 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 15:55:51.230 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:55:51.705 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 15:55:51.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 15:56:04.757 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-11-21 15:53:04.134 00:04:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-21 15:57:05.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57450 10 6452 1 2025-11-21 15:54:04.131 00:04:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-21 15:58:05.523 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37194 10 6452 1 Summary: total flows: 143, total bytes: 429184, total packets: 1033, avg bps: 905, avg pps: 0, avg bpp: 415 Time window: 2025-11-21 14:55:04 - 2025-11-21 15:58:15 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0041s User: 0.0008s Wall: 0.0024s flows/second: 60413.5 Runtime: 0.0024s