Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-19 01:59:09.523 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:52388 11 6504 1 2025-11-19 01:59:35.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 01:59:35.368 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 01:59:35.242 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 01:59:35.378 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 01:59:35.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 01:55:02.807 00:06:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-19 02:00:09.986 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50076 10 6452 1 2025-11-19 02:01:10.398 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60520 10 6452 1 2025-11-19 02:02:10.798 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54628 10 6452 1 2025-11-19 02:03:11.196 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-11-19 02:00:02.805 00:05:00.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:04:11.597 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 10 6452 1 2025-11-19 02:04:35.488 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:04:35.397 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:04:35.435 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:04:35.405 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:04:35.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:05:12.004 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42092 10 6452 1 2025-11-19 02:02:02.810 00:05:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:06:12.372 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58442 10 6452 1 2025-11-19 02:07:12.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47004 10 6452 1 2025-11-19 02:08:13.190 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37288 10 6452 1 2025-11-19 02:09:13.552 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49948 10 6452 1 2025-11-19 02:09:35.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:09:35.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:09:35.847 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:09:35.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:09:35.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:06:02.809 00:05:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:10:13.915 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 11 6504 1 2025-11-19 02:11:14.326 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40616 10 6452 1 2025-11-19 02:08:02.814 00:05:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:12:14.684 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51352 10 6452 1 2025-11-19 02:13:15.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35108 10 6452 1 2025-11-19 02:14:15.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40750 10 6452 1 2025-11-19 02:14:35.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:14:35.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:14:35.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:14:35.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:14:35.737 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:15:15.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41238 10 6452 1 2025-11-19 02:12:02.816 00:05:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:16:16.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6452 1 2025-11-19 02:17:16.728 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50704 10 6452 1 2025-11-19 02:14:02.818 00:05:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:18:17.141 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58344 10 6452 1 2025-11-19 02:19:17.502 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45360 10 6452 1 2025-11-19 02:19:36.100 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:19:36.070 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:19:36.086 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:19:36.158 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:19:36.169 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:20:17.907 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53320 10 6452 1 2025-11-19 02:21:18.322 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44380 10 6452 1 2025-11-19 02:18:02.820 00:05:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:22:18.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37414 10 6452 1 2025-11-19 02:23:19.139 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48104 10 6452 1 2025-11-19 02:20:02.821 00:05:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:24:19.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43490 10 6452 1 2025-11-19 02:24:36.189 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:24:35.980 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:24:36.085 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:24:36.087 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:24:36.168 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:25:19.913 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50346 10 6452 1 2025-11-19 02:26:20.327 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:39214 10 6452 1 2025-11-19 02:27:20.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-11-19 02:24:02.820 00:05:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:28:21.116 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34210 10 6452 1 2025-11-19 02:29:35.938 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:29:35.857 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:29:21.482 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38480 10 6452 1 2025-11-19 02:29:35.854 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:29:36.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:29:36.065 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:26:02.824 00:05:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:30:21.881 00:00:12.532 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 10 6452 1 2025-11-19 02:31:24.454 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57068 10 6452 1 2025-11-19 02:32:24.855 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48578 10 6452 1 2025-11-19 02:33:25.232 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48956 10 6452 1 2025-11-19 02:30:02.822 00:05:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:34:25.633 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60124 10 6452 1 2025-11-19 02:34:36.269 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:34:36.179 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:34:36.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:34:36.186 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:34:36.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:35:26.024 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-11-19 02:32:02.825 00:05:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:36:26.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32996 10 6452 1 2025-11-19 02:37:26.827 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56970 10 6452 1 2025-11-19 02:38:27.235 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53206 10 6452 1 2025-11-19 02:39:36.388 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:39:35.882 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:39:27.599 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55118 10 6452 1 2025-11-19 02:39:36.215 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:39:36.306 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:39:36.305 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:36:02.823 00:05:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:40:28.005 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38378 10 6452 1 2025-11-19 02:41:28.411 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-11-19 02:38:02.826 00:05:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:42:28.814 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36478 10 6452 1 2025-11-19 02:43:29.220 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-11-19 02:44:36.405 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:44:36.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:44:36.264 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:44:36.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:44:36.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:44:29.624 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56624 10 6452 1 2025-11-19 02:45:30.038 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45878 10 6452 1 2025-11-19 02:42:02.824 00:05:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:46:30.447 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58312 10 6452 1 2025-11-19 02:47:30.849 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:41250 10 6452 1 2025-11-19 02:44:02.827 00:05:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:48:31.227 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-11-19 02:49:36.337 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:49:36.249 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:49:36.455 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:49:36.254 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:49:36.480 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:49:31.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34370 10 6452 1 2025-11-19 02:50:31.997 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48840 10 6452 1 2025-11-19 02:51:32.408 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-11-19 02:48:02.825 00:05:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:52:32.811 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35570 10 6452 1 2025-11-19 02:53:33.222 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-11-19 02:50:02.827 00:05:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-19 02:54:36.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-19 02:54:36.545 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-19 02:54:36.413 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:54:36.598 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-19 02:54:36.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-19 02:54:33.584 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52542 10 6452 1 2025-11-19 02:55:33.990 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 2025-11-19 02:56:34.402 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46840 10 6452 1 2025-11-19 02:57:34.866 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-19 02:54:02.825 00:05:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-19 02:58:35.269 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:37114 10 6452 1 Summary: total flows: 140, total bytes: 417227, total packets: 1024, avg bps: 869, avg pps: 0, avg bpp: 407 Time window: 2025-11-19 01:55:02 - 2025-11-19 02:59:03 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0021s Wall: 0.0019s flows/second: 74821.9 Runtime: 0.0019s