Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 07:54:03.471 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 07:59:39.859 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6870 1 2025-11-20 08:00:11.380 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:00:11.519 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:00:11.387 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:00:11.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:00:11.471 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:00:40.283 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37652 10 6870 1 2025-11-20 08:01:40.641 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50782 10 6870 1 2025-11-20 08:02:41.037 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54578 10 6870 1 2025-11-20 07:58:03.475 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:03:41.404 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 10 6870 1 2025-11-20 08:04:41.779 00:00:10.734 TCP 1.101.0.1:3000 -> 23.104.0.1:48614 10 6870 1 2025-11-20 08:05:11.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:05:11.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:05:11.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:05:11.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:05:11.762 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:05:42.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42066 10 6870 1 2025-11-20 08:01:03.474 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:06:42.970 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6870 1 2025-11-20 08:07:43.378 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58784 10 6870 1 2025-11-20 08:08:43.786 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41186 10 6870 1 2025-11-20 08:09:44.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36538 10 6870 1 2025-11-20 08:05:03.478 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:10:11.532 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:10:11.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:10:11.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:10:11.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:10:11.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:10:44.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6870 1 2025-11-20 08:11:44.955 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56676 10 6870 1 2025-11-20 08:12:45.360 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48570 10 6870 1 2025-11-20 08:08:03.476 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:13:45.763 00:00:14.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6870 1 2025-11-20 08:14:50.142 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6870 1 2025-11-20 08:15:11.852 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:15:11.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:15:11.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:15:11.573 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:15:11.934 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:15:50.543 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47600 10 6870 1 2025-11-20 08:16:50.948 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6870 1 2025-11-20 08:12:03.478 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:17:51.355 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 12 10793 1 2025-11-20 08:18:51.787 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41502 10 6870 1 2025-11-20 08:15:03.477 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:19:52.190 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6870 1 2025-11-20 08:20:11.787 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:20:11.780 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:20:11.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:20:11.705 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:20:11.845 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:20:52.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6870 1 2025-11-20 08:21:52.957 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6870 1 2025-11-20 08:22:53.364 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49222 10 6870 1 2025-11-20 08:23:53.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6870 1 2025-11-20 08:19:03.483 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:24:54.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34956 10 6870 1 2025-11-20 08:25:11.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:25:11.977 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:25:12.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:25:12.152 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:25:12.235 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:25:54.540 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54420 10 6870 1 2025-11-20 08:22:03.478 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:26:54.905 00:00:10.868 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 12 6974 1 2025-11-20 08:27:55.809 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54754 10 6870 1 2025-11-20 08:28:56.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6870 1 2025-11-20 08:29:56.620 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6870 1 2025-11-20 08:30:12.181 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:30:12.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:30:11.942 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:30:12.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:30:12.025 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:26:03.489 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:30:56.989 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51892 10 6870 1 2025-11-20 08:31:57.394 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59116 10 6870 1 2025-11-20 08:32:57.795 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:48342 10 6870 1 2025-11-20 08:29:03.487 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:33:58.515 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34410 10 6870 1 2025-11-20 08:34:58.880 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39580 10 6870 1 2025-11-20 08:35:12.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:35:12.119 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:35:12.052 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:35:12.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:35:12.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:35:59.283 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51644 10 6870 1 2025-11-20 08:36:59.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 10 6870 1 2025-11-20 08:33:03.489 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:38:00.066 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6870 1 2025-11-20 08:39:00.478 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35470 10 6870 1 2025-11-20 08:40:12.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:40:00.882 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6870 1 2025-11-20 08:40:12.170 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:40:12.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:40:12.196 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:40:12.352 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:36:03.490 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:41:01.287 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57444 10 6870 1 2025-11-20 08:42:01.690 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:46772 10 6870 1 2025-11-20 08:43:02.254 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51090 10 6870 1 2025-11-20 08:44:02.634 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50296 10 6870 1 2025-11-20 08:40:03.493 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:45:12.516 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:45:12.358 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:45:03.041 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:32878 10 6870 1 2025-11-20 08:45:12.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:45:12.553 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:45:12.550 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:46:03.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54998 10 6870 1 2025-11-20 08:47:03.813 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6870 1 2025-11-20 08:43:03.490 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:48:04.218 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50570 10 6870 1 2025-11-20 08:49:04.611 00:00:12.822 TCP 1.101.0.1:3000 -> 23.104.0.1:44956 10 6870 1 2025-11-20 08:50:13.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:50:13.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:50:12.721 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:50:12.969 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:50:12.439 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:50:07.474 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6870 1 2025-11-20 08:51:07.872 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6870 1 2025-11-20 08:47:03.496 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:52:08.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6870 1 2025-11-20 08:53:08.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6870 1 2025-11-20 08:54:09.111 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42682 10 6870 1 2025-11-20 08:50:03.496 00:06:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 08:55:12.642 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 08:55:12.533 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:55:12.507 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 08:55:12.697 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 08:55:12.592 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 08:55:09.475 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6870 1 2025-11-20 08:56:09.878 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6870 1 2025-11-20 08:57:10.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6870 1 2025-11-20 08:58:10.683 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36206 10 6870 1 Summary: total flows: 136, total bytes: 439114, total packets: 1012, avg bps: 910, avg pps: 0, avg bpp: 433 Time window: 2025-11-20 07:54:03 - 2025-11-20 08:58:21 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0047s User: 0.0019s Wall: 0.0023s flows/second: 59105.3 Runtime: 0.0023s