Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 02:59:12.588 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46766 10 6452 1 2025-11-20 03:00:05.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:00:05.439 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:00:05.697 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:00:05.632 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:00:05.779 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:00:12.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6452 1 2025-11-20 03:01:13.396 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35984 10 6452 1 2025-11-20 02:57:03.359 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:02:13.793 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 10 6452 1 2025-11-20 03:03:14.196 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42192 10 6452 1 2025-11-20 03:04:14.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49860 10 6452 1 2025-11-20 03:05:05.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:05:05.358 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:05:05.658 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:05:05.872 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:00:03.358 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:05:05.741 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:05:14.966 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-11-20 03:06:15.331 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57388 10 6452 1 2025-11-20 03:07:15.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-11-20 03:08:16.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41236 10 6452 1 2025-11-20 03:04:03.363 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:09:16.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-11-20 03:10:05.781 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:10:05.630 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:10:05.670 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:10:05.739 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:10:05.754 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:10:16.949 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33040 10 6452 1 2025-11-20 03:11:17.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-20 03:07:03.361 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:12:17.765 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-11-20 03:13:18.132 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:49952 12 10375 1 2025-11-20 03:14:18.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37006 10 6452 1 2025-11-20 03:15:05.724 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:15:05.759 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:15:05.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:15:05.641 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:15:05.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:15:19.014 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-11-20 03:11:03.366 00:06:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:16:19.379 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55244 10 6452 1 2025-11-20 03:17:19.779 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59650 10 6452 1 2025-11-20 03:18:20.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33216 10 6452 1 2025-11-20 03:14:03.364 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:19:20.605 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-11-20 03:20:05.932 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:20:05.841 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:20:05.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:20:05.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:20:06.030 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:20:21.009 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33832 10 6452 1 2025-11-20 03:21:21.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40664 10 6452 1 2025-11-20 03:22:21.820 00:00:10.822 TCP 1.101.0.1:3000 -> 23.104.0.1:49430 10 6452 1 2025-11-20 03:18:03.368 00:06:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:23:22.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52558 10 6452 1 2025-11-20 03:24:23.109 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 10 6452 1 2025-11-20 03:25:05.902 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:25:05.938 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:25:05.939 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:25:06.021 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:25:06.055 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:25:23.487 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53410 10 6452 1 2025-11-20 03:21:03.367 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:26:23.849 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48504 10 6452 1 2025-11-20 03:27:24.276 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-11-20 03:28:24.640 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-11-20 03:29:25.041 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 10 6452 1 2025-11-20 03:25:03.371 00:06:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:30:06.352 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:30:06.222 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:30:06.153 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:30:06.158 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:30:06.237 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:30:25.435 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33254 10 6452 1 2025-11-20 03:31:25.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:33282 10 6452 1 2025-11-20 03:32:26.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40334 10 6452 1 2025-11-20 03:28:03.368 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:33:26.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-11-20 03:34:27.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41680 10 6452 1 2025-11-20 03:35:06.220 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:35:06.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:35:06.213 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:35:06.214 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:35:06.298 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:35:27.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54426 10 6452 1 2025-11-20 03:36:27.916 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-11-20 03:32:03.372 00:06:00.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:37:28.317 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46428 10 6452 1 2025-11-20 03:38:28.717 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47546 10 6452 1 2025-11-20 03:39:29.142 00:00:11.114 TCP 1.101.0.1:3000 -> 23.104.0.1:51822 10 6452 1 2025-11-20 03:35:03.372 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:40:05.931 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:40:05.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:40:06.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:40:06.111 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:40:06.315 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:40:30.333 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49682 10 6452 1 2025-11-20 03:41:30.736 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-11-20 03:42:31.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-11-20 03:43:31.548 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 11 6504 1 2025-11-20 03:39:03.376 00:06:00.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:44:32.009 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59608 10 6452 1 2025-11-20 03:45:06.288 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:45:06.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:45:06.429 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:45:06.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:45:06.520 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:45:32.415 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6452 1 2025-11-20 03:46:32.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36314 10 6452 1 2025-11-20 03:42:03.376 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:47:33.218 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:51784 10 6452 1 2025-11-20 03:48:33.612 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34154 10 6452 1 2025-11-20 03:49:34.012 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-11-20 03:50:06.711 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:50:06.552 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:50:06.288 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:50:06.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:50:06.550 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:50:34.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32966 10 6452 1 2025-11-20 03:46:03.378 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:51:34.781 00:00:10.523 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6452 1 2025-11-20 03:52:35.340 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45722 10 6452 1 2025-11-20 03:53:35.745 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55862 10 6452 1 2025-11-20 03:49:03.377 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 03:54:36.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-11-20 03:55:07.473 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 03:55:07.249 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:55:07.312 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 03:55:07.370 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 03:55:07.395 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 03:55:36.472 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53348 10 6452 1 2025-11-20 03:56:36.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-11-20 03:57:37.291 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54434 10 6452 1 2025-11-20 03:53:03.380 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 03:58:37.692 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 10 6452 1 Summary: total flows: 137, total bytes: 420852, total packets: 1021, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-11-20 02:57:03 - 2025-11-20 03:59:03 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0010s Wall: 0.0020s flows/second: 69298.1 Runtime: 0.0020s