Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 03:59:38.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50572 10 6452 1 2025-11-20 04:00:06.977 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:00:06.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:00:06.422 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:00:06.893 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:00:06.646 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:00:38.506 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38952 10 6452 1 2025-11-20 03:56:03.377 00:06:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:01:38.867 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-11-20 04:02:39.279 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37522 10 6452 1 2025-11-20 04:03:39.648 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49272 10 6452 1 2025-11-20 04:04:40.051 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54164 10 6452 1 2025-11-20 04:00:03.381 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:05:06.974 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:05:06.738 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:05:06.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:05:06.882 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:05:06.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:05:40.451 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42488 10 6452 1 2025-11-20 04:06:40.856 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-11-20 04:07:41.234 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45206 10 6452 1 2025-11-20 04:03:03.380 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:08:41.639 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-11-20 04:09:42.040 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37706 10 6452 1 2025-11-20 04:10:07.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:10:06.697 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:10:07.240 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:10:07.081 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:10:07.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:10:42.442 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36912 10 6452 1 2025-11-20 04:11:42.839 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-11-20 04:07:03.384 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:12:43.227 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45426 10 6452 1 2025-11-20 04:13:43.632 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37514 10 6452 1 2025-11-20 04:14:43.997 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59584 10 6452 1 2025-11-20 04:15:07.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:15:07.103 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:15:06.963 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:15:06.957 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:10:03.385 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:15:07.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:15:44.405 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-11-20 04:16:44.769 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34352 10 6452 1 2025-11-20 04:17:45.184 00:00:10.572 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-11-20 04:18:45.792 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56346 10 6452 1 2025-11-20 04:14:03.391 00:06:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:19:46.209 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57658 10 6452 1 2025-11-20 04:20:07.035 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:20:06.948 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:20:06.912 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:20:06.953 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:20:07.082 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:20:46.613 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55918 10 6452 1 2025-11-20 04:21:46.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46166 10 6452 1 2025-11-20 04:17:03.389 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:22:47.392 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44904 10 6452 1 2025-11-20 04:23:47.801 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-11-20 04:24:48.203 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-11-20 04:25:07.318 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:25:07.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:25:07.009 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:25:07.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:25:07.178 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:25:48.609 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-11-20 04:21:03.392 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:26:49.094 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54460 10 6452 1 2025-11-20 04:27:49.455 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-11-20 04:28:49.855 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41970 10 6452 1 2025-11-20 04:24:03.392 00:06:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:29:50.267 00:00:10.667 TCP 1.101.0.1:3000 -> 23.104.0.1:38228 10 6452 1 2025-11-20 04:30:07.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:30:07.115 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:30:07.278 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:30:07.095 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:30:07.360 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:30:50.972 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-11-20 04:31:51.347 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59630 10 6452 1 2025-11-20 04:32:51.706 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53962 10 6452 1 2025-11-20 04:28:03.395 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:33:52.075 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51888 10 6452 1 2025-11-20 04:34:52.488 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42286 10 6452 1 2025-11-20 04:35:07.399 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:35:07.494 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:35:07.126 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:35:07.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:35:07.637 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:35:52.891 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 10 6452 1 2025-11-20 04:31:03.394 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:36:53.276 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-20 04:37:53.679 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51928 10 6452 1 2025-11-20 04:38:54.053 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-11-20 04:39:54.459 00:00:10.779 TCP 1.101.0.1:3000 -> 23.104.0.1:43734 12 6556 1 2025-11-20 04:35:03.398 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:40:07.603 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:40:07.473 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:40:07.417 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:40:07.520 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:40:07.474 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:40:55.310 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:49388 10 6452 1 2025-11-20 04:41:55.720 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36510 10 6452 1 2025-11-20 04:38:03.396 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:42:56.138 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54944 10 6452 1 2025-11-20 04:43:56.503 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35012 10 6452 1 2025-11-20 04:45:07.582 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:45:07.543 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:44:56.907 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37996 11 6504 1 2025-11-20 04:45:07.725 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:45:07.585 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:45:07.808 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:45:57.329 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36206 10 6452 1 2025-11-20 04:42:03.400 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:46:57.731 00:00:10.991 TCP 1.101.0.1:3000 -> 23.104.0.1:58814 10 6452 1 2025-11-20 04:47:58.764 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:48158 12 10375 1 2025-11-20 04:48:59.202 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 10 6452 1 2025-11-20 04:45:03.399 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:49:59.605 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37384 10 6452 1 2025-11-20 04:50:07.853 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:50:07.641 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:50:07.748 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:50:07.818 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:50:07.831 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:51:00.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50244 10 6452 1 2025-11-20 04:52:00.430 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34832 10 6452 1 2025-11-20 04:53:00.833 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43956 10 6452 1 2025-11-20 04:49:03.402 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 04:54:01.233 00:00:10.792 TCP 1.101.0.1:3000 -> 23.104.0.1:33292 10 6452 1 2025-11-20 04:55:07.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 04:55:07.815 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:55:07.881 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 04:55:07.850 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 04:55:07.964 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 04:55:02.086 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-11-20 04:56:02.486 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56422 10 6452 1 2025-11-20 04:52:03.399 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 04:57:02.851 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52178 10 6452 1 2025-11-20 04:58:03.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35406 10 6452 1 Summary: total flows: 136, total bytes: 414504, total packets: 1013, avg bps: 888, avg pps: 0, avg bpp: 409 Time window: 2025-11-20 03:56:03 - 2025-11-20 04:58:13 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0025s User: 0.0025s Wall: 0.0024s flows/second: 57237.1 Runtime: 0.0024s