Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 01:58:46.599 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-11-20 01:54:03.335 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 01:59:47.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34416 10 6452 1 2025-11-20 02:00:04.085 00:00:00.052 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:00:04.003 00:00:00.052 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:00:04.326 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:00:04.256 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:00:04.444 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:00:47.407 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59462 10 6452 1 2025-11-20 02:01:47.811 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40670 10 6452 1 2025-11-20 01:57:03.334 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:02:48.210 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-11-20 02:03:48.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45450 10 6452 1 2025-11-20 02:04:49.019 00:00:10.536 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-11-20 02:05:04.472 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.058 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:05:04.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:05:04.389 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:05:04.444 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:05:49.591 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-11-20 02:01:03.341 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:06:49.967 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56032 10 6452 1 2025-11-20 02:07:50.386 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 12 10375 1 2025-11-20 02:08:50.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-11-20 02:04:03.339 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:10:04.272 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:10:04.455 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:10:04.443 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:10:04.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:09:51.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-11-20 02:10:04.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:10:51.617 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-11-20 02:11:52.005 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42938 10 6452 1 2025-11-20 02:12:52.404 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-11-20 02:08:03.343 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:13:52.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 10 6452 1 2025-11-20 02:15:04.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:15:04.450 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:14:53.206 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47362 10 6452 1 2025-11-20 02:15:04.443 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:15:04.605 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:15:04.526 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:11:03.342 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:15:53.614 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55262 10 6452 1 2025-11-20 02:16:54.018 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48840 10 6452 1 2025-11-20 02:17:54.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 10 6452 1 2025-11-20 02:18:54.828 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46054 10 6452 1 2025-11-20 02:15:03.345 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:20:04.746 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:20:04.508 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:20:04.583 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:20:04.587 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:19:55.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55232 10 6452 1 2025-11-20 02:20:04.665 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:20:55.595 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 10 6452 1 2025-11-20 02:21:55.999 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43178 10 6452 1 2025-11-20 02:18:03.342 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:22:56.401 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 12 6556 1 2025-11-20 02:23:56.821 00:00:10.810 TCP 1.101.0.1:3000 -> 23.104.0.1:38604 10 6452 1 2025-11-20 02:25:05.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:25:05.161 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:25:05.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:25:05.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:25:05.425 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:24:57.676 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-20 02:25:58.107 00:00:11.342 TCP 1.101.0.1:3000 -> 23.104.0.1:32792 10 6452 1 2025-11-20 02:22:03.345 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:26:59.491 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37214 10 6452 1 2025-11-20 02:27:59.853 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52738 10 6452 1 2025-11-20 02:29:00.269 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33508 10 6452 1 2025-11-20 02:30:04.691 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:30:04.821 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:30:05.005 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:30:04.903 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:25:03.343 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:30:05.086 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:30:00.674 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46636 10 6452 1 2025-11-20 02:31:01.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50918 10 6452 1 2025-11-20 02:32:01.513 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-11-20 02:33:01.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6452 1 2025-11-20 02:29:03.349 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:34:02.322 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59354 10 6452 1 2025-11-20 02:35:04.904 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:35:04.958 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:35:04.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:35:04.895 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:35:05.039 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:35:02.728 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-11-20 02:36:03.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32956 10 6452 1 2025-11-20 02:32:03.348 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:37:03.547 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-11-20 02:38:03.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-11-20 02:39:04.365 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-11-20 02:40:05.052 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:40:04.903 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:40:04.952 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:40:05.048 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:40:05.037 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:40:04.910 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-11-20 02:36:03.351 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:41:05.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-11-20 02:42:05.711 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46308 10 6452 1 2025-11-20 02:43:06.116 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46448 10 6452 1 2025-11-20 02:39:03.349 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:44:06.493 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-11-20 02:45:05.242 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.160 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:45:05.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:45:04.964 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:45:05.068 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:45:06.901 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6452 1 2025-11-20 02:46:07.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-11-20 02:47:07.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45256 10 6452 1 2025-11-20 02:43:03.353 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:48:08.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54470 10 6452 1 2025-11-20 02:49:08.537 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59676 10 6452 1 2025-11-20 02:50:05.421 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:50:05.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:50:05.285 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:50:05.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:50:05.368 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:50:08.941 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47386 10 6452 1 2025-11-20 02:46:03.350 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:51:09.315 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:53082 10 6452 1 2025-11-20 02:52:09.672 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-11-20 02:53:10.046 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-11-20 02:54:10.457 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-11-20 02:55:05.546 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.458 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 02:55:05.424 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:55:05.464 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 02:55:05.463 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 02:50:03.357 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 02:55:10.856 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-11-20 02:56:11.280 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42370 10 6452 1 2025-11-20 02:57:11.680 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51890 10 6452 1 2025-11-20 02:53:03.356 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 02:58:12.108 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:50846 12 10369 1 Summary: total flows: 138, total bytes: 425682, total packets: 1038, avg bps: 873, avg pps: 0, avg bpp: 410 Time window: 2025-11-20 01:54:03 - 2025-11-20 02:59:03 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0039s User: 0.0010s Wall: 0.0022s flows/second: 63508.2 Runtime: 0.0022s