Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 05:59:28.136 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39128 10 6452 1 2025-11-20 05:55:03.420 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:00:09.497 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.360 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:00:09.186 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:00:09.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:00:09.361 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:00:28.537 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:50092 10 6452 1 2025-11-20 06:01:28.890 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41110 12 6556 1 2025-11-20 06:02:29.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52022 10 6452 1 2025-11-20 06:03:29.718 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49624 10 6452 1 2025-11-20 05:59:03.425 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:04:30.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41638 10 6452 1 2025-11-20 06:05:09.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:05:09.192 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:05:08.951 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:05:09.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:05:09.011 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:05:30.543 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34898 10 6452 1 2025-11-20 06:06:30.943 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45984 10 6452 1 2025-11-20 06:02:03.427 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:07:31.315 00:00:10.883 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-11-20 06:08:32.233 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 10 6452 1 2025-11-20 06:09:32.643 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40612 12 6556 1 2025-11-20 06:10:09.253 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:10:09.110 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:10:09.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:10:09.319 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:10:09.269 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:10:33.123 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34514 10 6452 1 2025-11-20 06:06:03.431 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:11:33.524 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54618 10 6452 1 2025-11-20 06:12:33.930 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 10 6452 1 2025-11-20 06:13:34.346 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54980 10 6452 1 2025-11-20 06:09:03.430 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:14:34.753 00:00:23.991 TCP 1.101.0.1:3000 -> 23.104.0.1:52302 10 6452 1 2025-11-20 06:15:09.222 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:15:09.379 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:15:09.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:15:09.488 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:15:09.478 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:15:48.808 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47272 10 6452 1 2025-11-20 06:16:49.214 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33224 10 6452 1 2025-11-20 06:17:49.617 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57510 10 6452 1 2025-11-20 06:13:03.436 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:18:50.024 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-11-20 06:19:50.430 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52406 10 6452 1 2025-11-20 06:20:09.394 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:20:09.282 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:20:09.555 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:20:09.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:20:09.638 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:16:03.434 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:20:50.833 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:42340 10 6452 1 2025-11-20 06:21:51.225 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52040 10 6452 1 2025-11-20 06:22:51.631 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6452 1 2025-11-20 06:23:52.034 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45972 10 6452 1 2025-11-20 06:24:52.437 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36874 10 6452 1 2025-11-20 06:20:03.437 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:25:10.020 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:25:09.936 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:25:09.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:25:09.930 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:25:09.613 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:25:52.831 00:00:15.831 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-11-20 06:26:58.704 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-11-20 06:23:03.435 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:27:59.109 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 12 10375 1 2025-11-20 06:28:59.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33164 10 6452 1 2025-11-20 06:30:09.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:30:09.628 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:29:59.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33624 10 6452 1 2025-11-20 06:30:09.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:30:09.713 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:30:09.677 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:31:00.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-11-20 06:27:03.437 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:32:00.809 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51022 10 6452 1 2025-11-20 06:33:01.222 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 12 10375 1 2025-11-20 06:34:01.704 00:00:11.109 TCP 1.101.0.1:3000 -> 23.104.0.1:41758 10 6452 1 2025-11-20 06:30:03.436 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:35:09.813 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:35:09.751 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:35:09.817 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:35:09.725 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:35:09.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:35:02.853 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38252 10 6452 1 2025-11-20 06:36:03.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-11-20 06:37:03.677 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51234 10 6452 1 2025-11-20 06:38:04.040 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-11-20 06:34:03.439 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:39:04.450 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-11-20 06:40:10.155 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:40:09.879 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:40:09.927 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:40:09.923 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:40:10.012 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:40:04.855 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-11-20 06:41:05.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59104 10 6452 1 2025-11-20 06:37:03.438 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:42:05.638 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-11-20 06:43:06.056 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-11-20 06:44:06.424 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37352 10 6452 1 2025-11-20 06:45:09.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:45:09.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:45:10.047 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:45:10.050 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:45:10.130 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:45:06.828 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57222 10 6452 1 2025-11-20 06:41:03.443 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:46:07.227 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 10 6452 1 2025-11-20 06:47:07.592 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6452 1 2025-11-20 06:48:07.962 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-11-20 06:44:03.441 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:49:08.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46586 10 6452 1 2025-11-20 06:50:09.873 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:50:10.162 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:50:10.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:50:10.190 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:50:09.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:50:08.771 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50934 10 6452 1 2025-11-20 06:51:09.179 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:33268 10 6452 1 2025-11-20 06:52:09.612 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60144 10 6452 1 2025-11-20 06:48:03.444 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 06:53:09.975 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59398 10 6452 1 2025-11-20 06:54:10.386 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55962 10 6452 1 2025-11-20 06:55:10.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 06:55:10.097 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:55:10.342 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 06:55:10.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 06:55:10.425 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 06:55:10.795 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48422 10 6452 1 2025-11-20 06:51:03.444 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 06:56:11.206 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34686 10 6452 1 2025-11-20 06:57:11.619 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46586 10 6452 1 2025-11-20 06:58:12.026 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6452 1 Summary: total flows: 136, total bytes: 418479, total packets: 1016, avg bps: 881, avg pps: 0, avg bpp: 411 Time window: 2025-11-20 05:55:03 - 2025-11-20 06:58:22 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0044s User: 0.0018s Wall: 0.0019s flows/second: 70068.2 Runtime: 0.0020s