Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 00:54:03.322 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 00:59:19.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-11-20 01:00:03.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:00:02.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:00:02.972 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:00:03.190 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:00:02.961 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:00:19.514 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43384 10 6452 1 2025-11-20 01:01:19.923 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-11-20 01:02:20.337 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 2025-11-20 00:58:03.323 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:03:20.745 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40254 10 6452 1 2025-11-20 01:04:21.159 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-11-20 01:05:03.105 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:05:03.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:05:03.277 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:05:03.023 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:05:03.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:05:21.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55802 10 6452 1 2025-11-20 01:01:03.323 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:06:21.962 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33978 10 6452 1 2025-11-20 01:07:22.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33974 10 6452 1 2025-11-20 01:08:22.797 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43288 10 6452 1 2025-11-20 01:09:23.202 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48872 10 6452 1 2025-11-20 01:10:03.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:10:03.306 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:10:03.142 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:10:03.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:10:03.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:05:03.325 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:10:23.558 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48132 10 6452 1 2025-11-20 01:11:23.921 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-11-20 01:12:24.325 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-11-20 01:08:03.323 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:13:24.719 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46152 10 6452 1 2025-11-20 01:14:25.133 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53398 10 6452 1 2025-11-20 01:15:03.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:15:03.441 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:15:03.428 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:15:03.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:15:03.624 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:15:25.501 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 11 6504 1 2025-11-20 01:16:25.959 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43710 10 6452 1 2025-11-20 01:12:03.326 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:17:26.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38474 10 6452 1 2025-11-20 01:18:26.725 00:00:13.657 TCP 1.101.0.1:3000 -> 23.104.0.1:56012 10 6452 1 2025-11-20 01:19:30.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39662 10 6452 1 2025-11-20 01:20:03.728 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:20:03.568 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:20:03.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:20:03.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:15:03.328 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:20:03.806 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:20:30.834 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48486 10 6452 1 2025-11-20 01:21:31.234 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-11-20 01:22:31.639 00:00:10.850 TCP 1.101.0.1:3000 -> 23.104.0.1:60214 10 6452 1 2025-11-20 01:23:32.523 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-11-20 01:19:03.330 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:24:32.927 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33780 10 6452 1 2025-11-20 01:25:03.593 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:25:03.785 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:25:03.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:25:03.510 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:25:03.609 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:25:33.342 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51052 10 6452 1 2025-11-20 01:26:33.699 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56762 10 6452 1 2025-11-20 01:22:03.328 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:27:34.114 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41696 10 6452 1 2025-11-20 01:28:34.469 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-11-20 01:29:34.870 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57756 10 6452 1 2025-11-20 01:30:03.920 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:30:03.763 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:30:03.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:30:03.836 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:30:03.772 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:30:35.289 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54086 10 6452 1 2025-11-20 01:26:03.331 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:31:35.691 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45838 10 6452 1 2025-11-20 01:32:36.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35654 10 6452 1 2025-11-20 01:33:36.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44048 10 6452 1 2025-11-20 01:29:03.329 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:34:36.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45698 10 6452 1 2025-11-20 01:35:03.763 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:35:03.794 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:35:03.834 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:35:04.056 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:35:03.917 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:35:37.319 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47090 10 6452 1 2025-11-20 01:36:37.680 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45484 10 6452 1 2025-11-20 01:37:38.105 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:56158 12 10375 1 2025-11-20 01:33:03.332 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:38:38.618 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-11-20 01:39:39.022 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54854 10 6452 1 2025-11-20 01:40:04.029 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:40:03.674 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:40:03.793 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:40:03.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:40:03.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:40:39.421 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49514 10 6452 1 2025-11-20 01:36:03.329 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:41:39.830 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-11-20 01:42:40.230 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46970 10 6452 1 2025-11-20 01:43:40.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36014 10 6452 1 2025-11-20 01:44:41.058 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6452 1 2025-11-20 01:45:03.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:45:03.862 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:45:03.732 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:45:03.858 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:45:03.942 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:40:03.335 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:45:41.462 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57282 10 6452 1 2025-11-20 01:46:41.828 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 6452 1 2025-11-20 01:47:42.191 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-11-20 01:43:03.332 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:48:42.615 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36704 10 6452 1 2025-11-20 01:49:43.035 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39566 10 6452 1 2025-11-20 01:50:04.132 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:50:04.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:50:04.187 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:50:04.049 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:50:03.838 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:50:43.402 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54116 10 6452 1 2025-11-20 01:51:43.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-20 01:47:03.334 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:52:44.179 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 10 6452 1 2025-11-20 01:53:44.581 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-11-20 01:54:44.988 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44402 10 6452 1 2025-11-20 01:55:04.107 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 01:55:03.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:55:04.112 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 01:55:04.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 01:50:03.333 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 01:55:04.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 01:55:45.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42050 10 6452 1 2025-11-20 01:56:45.794 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-11-20 01:57:46.202 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54488 10 6452 1 Summary: total flows: 136, total bytes: 414400, total packets: 1011, avg bps: 864, avg pps: 0, avg bpp: 409 Time window: 2025-11-20 00:54:03 - 2025-11-20 01:57:56 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0027s User: 0.0018s Wall: 0.0012s flows/second: 111389.4 Runtime: 0.0012s