Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 09:59:35.870 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60740 10 6452 1 2025-11-20 10:00:13.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:00:13.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:00:13.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:00:13.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:00:13.940 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:00:36.283 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-11-20 10:01:36.690 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-11-20 09:57:03.516 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:02:37.110 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40094 10 6452 1 2025-11-20 10:03:37.510 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-11-20 10:04:37.916 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-11-20 10:00:03.514 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:05:14.175 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:05:13.927 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:05:13.759 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:05:14.093 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:05:14.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:05:38.329 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6452 1 2025-11-20 10:06:38.726 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48246 10 6452 1 2025-11-20 10:07:39.135 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6452 1 2025-11-20 10:08:39.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54484 10 6452 1 2025-11-20 10:04:03.518 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:09:39.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60140 10 6452 1 2025-11-20 10:10:14.352 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:10:14.053 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:10:13.742 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:10:14.270 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:10:14.024 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:10:40.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-20 10:11:40.767 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56268 10 6452 1 2025-11-20 10:07:03.520 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:12:41.174 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56980 10 6452 1 2025-11-20 10:13:41.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43328 10 6452 1 2025-11-20 10:14:41.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-11-20 10:15:14.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:15:14.104 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:15:14.173 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:15:13.963 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:15:14.230 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:15:42.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-11-20 10:11:03.526 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:16:42.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-11-20 10:17:43.210 00:00:10.997 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-11-20 10:18:44.246 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42852 10 6452 1 2025-11-20 10:14:03.524 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:19:44.649 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-11-20 10:20:14.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:20:14.546 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:20:14.455 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:20:14.359 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:20:14.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:20:45.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50034 10 6452 1 2025-11-20 10:21:45.423 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56044 10 6452 1 2025-11-20 10:22:45.827 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-11-20 10:18:03.530 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:23:46.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56976 10 6452 1 2025-11-20 10:24:46.630 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-20 10:25:14.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:25:14.686 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:25:14.572 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:25:14.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:25:14.327 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:25:47.042 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52296 10 6452 1 2025-11-20 10:21:03.528 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:26:47.451 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41654 10 6452 1 2025-11-20 10:27:47.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57434 10 6452 1 2025-11-20 10:28:48.284 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34054 10 6452 1 2025-11-20 10:29:48.711 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60818 10 6452 1 2025-11-20 10:25:03.531 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:30:14.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:30:14.373 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:30:14.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:30:14.433 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:30:14.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:30:49.115 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53806 10 6452 1 2025-11-20 10:31:49.527 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-11-20 10:32:49.946 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56946 10 6452 1 2025-11-20 10:28:03.530 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:33:50.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-11-20 10:34:50.765 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60630 10 6452 1 2025-11-20 10:35:14.678 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:35:14.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:35:14.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:35:14.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:35:14.696 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:35:51.126 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-11-20 10:36:51.530 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33888 10 6452 1 2025-11-20 10:32:03.532 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:37:51.937 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-11-20 10:38:52.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-11-20 10:35:03.530 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:39:52.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59840 10 6452 1 2025-11-20 10:40:14.784 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:40:14.550 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:40:14.471 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:40:14.701 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:40:14.636 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:40:53.186 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-11-20 10:41:53.593 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49072 10 6452 1 2025-11-20 10:42:53.997 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37354 10 6452 1 2025-11-20 10:43:54.401 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-11-20 10:39:03.537 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:44:54.760 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:54982 10 6452 1 2025-11-20 10:45:14.705 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:45:14.777 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:45:14.685 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:45:14.482 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:45:14.768 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:45:55.226 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50896 10 6452 1 2025-11-20 10:42:03.534 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:46:55.627 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52074 10 6452 1 2025-11-20 10:47:56.000 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39228 10 6452 1 2025-11-20 10:48:56.403 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55740 10 6452 1 2025-11-20 10:49:56.803 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-11-20 10:50:14.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:50:14.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:50:14.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:50:14.676 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:50:14.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:46:03.537 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:50:57.214 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-11-20 10:51:57.619 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-11-20 10:52:58.034 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 10 6452 1 2025-11-20 10:49:03.535 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 10:53:58.459 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-11-20 10:55:15.019 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:54:58.832 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60928 10 6452 1 2025-11-20 10:55:14.855 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 10:55:14.897 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:55:14.935 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 10:55:14.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 10:55:59.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53232 10 6452 1 2025-11-20 10:56:59.638 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58638 10 6452 1 2025-11-20 10:53:03.540 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 10:58:00.064 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 12 10375 1 Summary: total flows: 136, total bytes: 414348, total packets: 1010, avg bps: 891, avg pps: 0, avg bpp: 410 Time window: 2025-11-20 09:57:03 - 2025-11-20 10:59:03 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0041s User: 0.0021s Wall: 0.0021s flows/second: 65573.7 Runtime: 0.0021s