Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 08:54:03.499 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 08:59:11.110 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42154 10 6870 1 2025-11-20 09:00:12.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:00:12.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:00:12.677 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:00:12.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:00:12.661 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:00:11.471 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6870 1 2025-11-20 09:01:11.872 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 10 6870 1 2025-11-20 08:57:03.497 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:02:12.284 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6870 1 2025-11-20 09:03:12.649 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:33614 12 10369 1 2025-11-20 09:04:13.136 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-11-20 09:05:12.959 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:05:12.824 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:05:12.765 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:05:12.879 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:05:12.728 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:05:13.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-11-20 09:01:03.500 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:06:13.939 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-11-20 09:07:14.351 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:34056 10 6452 1 2025-11-20 09:08:14.982 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36084 10 6452 1 2025-11-20 09:04:03.499 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:09:15.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-11-20 09:10:12.868 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:10:12.857 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:10:12.908 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:10:12.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:10:12.991 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:10:15.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58360 10 6452 1 2025-11-20 09:11:16.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 10 6452 1 2025-11-20 09:12:16.606 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-11-20 09:08:03.503 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:13:17.018 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56002 10 6452 1 2025-11-20 09:14:17.418 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46248 10 6452 1 2025-11-20 09:15:13.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:15:12.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:15:12.866 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:15:12.972 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:15:12.966 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:15:17.779 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56452 10 6452 1 2025-11-20 09:11:03.502 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:16:18.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44104 10 6452 1 2025-11-20 09:17:18.587 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-11-20 09:18:18.996 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 12 10369 1 2025-11-20 09:19:19.821 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55470 10 6452 1 2025-11-20 09:15:03.505 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:20:13.095 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:20:13.050 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:20:13.148 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:20:13.039 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:20:13.231 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:20:20.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56948 10 6452 1 2025-11-20 09:21:20.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-11-20 09:22:20.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48944 10 6452 1 2025-11-20 09:18:03.504 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:23:21.399 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49358 10 6452 1 2025-11-20 09:24:21.807 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48706 10 6452 1 2025-11-20 09:25:13.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:25:13.092 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:25:13.011 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:25:12.951 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:25:13.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:25:22.206 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-11-20 09:26:22.608 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57856 10 6452 1 2025-11-20 09:22:03.508 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:27:23.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58628 10 6452 1 2025-11-20 09:28:23.434 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51842 10 6452 1 2025-11-20 09:29:23.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6452 1 2025-11-20 09:25:03.505 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:30:13.353 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:30:13.246 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:30:13.148 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:30:13.248 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:30:13.329 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:30:24.286 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58708 10 6452 1 2025-11-20 09:31:24.651 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-11-20 09:32:25.058 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 10 6452 1 2025-11-20 09:33:25.480 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59560 10 6452 1 2025-11-20 09:29:03.509 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:34:25.888 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-11-20 09:35:13.440 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:35:13.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:35:13.382 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:35:13.388 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:35:13.466 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:35:26.305 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58168 10 6452 1 2025-11-20 09:36:26.711 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34828 10 6452 1 2025-11-20 09:32:03.506 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:37:27.125 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37376 10 6452 1 2025-11-20 09:38:27.531 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52512 10 6452 1 2025-11-20 09:39:27.898 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-11-20 09:40:13.519 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:40:13.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.336 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.436 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.494 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:40:28.312 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-11-20 09:36:03.509 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:41:28.716 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54672 10 6452 1 2025-11-20 09:42:29.101 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35538 10 6452 1 2025-11-20 09:43:29.471 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43352 10 6452 1 2025-11-20 09:39:03.506 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:44:29.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58268 10 6452 1 2025-11-20 09:45:13.615 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:45:13.493 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:45:13.609 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:45:13.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:45:13.692 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:45:30.284 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42118 10 6452 1 2025-11-20 09:46:30.688 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-11-20 09:47:31.055 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-11-20 09:43:03.511 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:48:31.458 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-11-20 09:49:31.857 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-11-20 09:50:13.613 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:50:13.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:50:13.344 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:50:13.531 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:50:13.647 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:50:32.272 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-11-20 09:46:03.508 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:51:32.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6452 1 2025-11-20 09:52:33.032 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33424 10 6452 1 2025-11-20 09:53:33.435 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46310 10 6452 1 2025-11-20 09:54:33.844 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36352 10 6452 1 2025-11-20 09:50:03.515 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 09:55:13.803 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 09:55:13.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:55:13.807 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 09:55:13.648 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 09:55:13.889 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 09:55:34.261 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54884 10 6452 1 2025-11-20 09:56:34.663 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34786 10 6452 1 2025-11-20 09:57:35.104 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55166 10 6452 1 2025-11-20 09:53:03.515 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 09:58:35.473 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 Summary: total flows: 138, total bytes: 427244, total packets: 1036, avg bps: 876, avg pps: 0, avg bpp: 412 Time window: 2025-11-20 08:54:03 - 2025-11-20 09:59:03 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0027s User: 0.0018s Wall: 0.0023s flows/second: 61250.2 Runtime: 0.0023s