Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 10:59:01.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-11-20 11:00:01.523 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-11-20 11:00:14.836 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:00:15.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:00:14.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:00:15.190 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:00:15.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 10:56:03.539 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:01:01.891 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48520 12 6556 1 2025-11-20 11:02:02.304 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-11-20 11:03:02.712 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53886 10 6452 1 2025-11-20 11:04:03.121 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-11-20 11:00:03.542 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:05:15.446 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:05:15.111 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:05:15.299 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:05:03.522 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39328 10 6452 1 2025-11-20 11:05:15.301 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:05:15.383 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:06:03.924 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37196 10 6452 1 2025-11-20 11:07:04.332 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:56694 10 6452 1 2025-11-20 11:03:03.540 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:08:04.944 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6452 1 2025-11-20 11:09:05.353 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47436 10 6452 1 2025-11-20 11:10:15.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:10:15.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:10:15.030 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:10:15.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:10:15.340 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:10:05.760 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45650 10 6452 1 2025-11-20 11:11:06.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59548 10 6452 1 2025-11-20 11:07:03.547 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:12:06.578 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-11-20 11:13:06.977 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6452 1 2025-11-20 11:14:07.384 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46262 10 6452 1 2025-11-20 11:10:03.544 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:15:17.254 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:15:16.893 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:15:17.194 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:15:17.193 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:15:17.277 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:15:07.784 00:00:17.693 TCP 1.101.0.1:3000 -> 23.104.0.1:36088 10 6452 1 2025-11-20 11:16:15.517 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6452 1 2025-11-20 11:17:15.880 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43542 10 6452 1 2025-11-20 11:18:16.288 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56908 10 6452 1 2025-11-20 11:14:03.548 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:19:16.690 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-11-20 11:20:17.265 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:20:17.243 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:20:17.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:20:17.184 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:20:17.112 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:20:17.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-11-20 11:21:17.507 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-11-20 11:17:03.546 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:22:17.906 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-11-20 11:23:18.273 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6452 1 2025-11-20 11:24:18.674 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-11-20 11:25:17.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:25:17.077 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:25:17.347 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:25:17.358 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:25:17.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:25:19.037 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-11-20 11:21:03.549 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:26:19.433 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49786 10 6452 1 2025-11-20 11:27:19.842 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-20 11:28:20.263 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-11-20 11:24:03.548 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:29:20.670 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-20 11:30:17.343 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:30:17.559 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:30:17.482 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:30:17.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:30:17.564 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:30:21.096 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-20 11:31:21.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48990 10 6452 1 2025-11-20 11:32:21.925 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:56930 10 6452 1 2025-11-20 11:28:03.552 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:33:22.353 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-11-20 11:34:22.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6452 1 2025-11-20 11:35:17.636 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:35:17.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:35:17.557 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:35:17.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:35:17.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:35:23.183 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-11-20 11:31:03.550 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:36:23.599 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46994 10 6452 1 2025-11-20 11:37:23.999 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55842 10 6452 1 2025-11-20 11:38:24.406 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57594 10 6452 1 2025-11-20 11:39:24.808 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56008 10 6452 1 2025-11-20 11:35:03.553 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:40:17.820 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:40:17.686 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:40:17.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:40:17.736 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:40:17.689 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:40:25.209 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47942 10 6452 1 2025-11-20 11:41:25.572 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38188 10 6452 1 2025-11-20 11:42:25.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-11-20 11:38:03.551 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:43:26.375 00:00:14.108 TCP 1.101.0.1:3000 -> 23.104.0.1:38216 10 6452 1 2025-11-20 11:44:30.528 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:52634 10 6452 1 2025-11-20 11:45:17.701 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:45:17.457 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:45:17.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:45:17.707 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:45:17.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:45:30.966 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44192 10 6452 1 2025-11-20 11:46:31.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37922 10 6452 1 2025-11-20 11:42:03.557 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:47:31.777 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54442 10 6452 1 2025-11-20 11:48:32.143 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-11-20 11:49:32.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56008 12 6556 1 2025-11-20 11:45:03.555 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:50:17.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:50:18.136 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:50:17.668 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:50:17.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:50:17.745 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:50:32.946 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-11-20 11:51:33.365 00:00:11.013 TCP 1.101.0.1:3000 -> 23.104.0.1:58622 10 6452 1 2025-11-20 11:52:34.418 00:00:10.969 TCP 1.101.0.1:3000 -> 23.104.0.1:44624 12 10375 1 2025-11-20 11:53:35.429 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55866 10 6452 1 2025-11-20 11:49:03.564 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 11:54:35.839 00:00:10.785 TCP 1.101.0.1:3000 -> 23.104.0.1:55150 10 6452 1 2025-11-20 11:55:18.006 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 11:55:18.135 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 11:55:18.044 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:55:17.922 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 11:55:18.203 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 11:55:36.660 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-11-20 11:56:37.065 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35526 10 6452 1 2025-11-20 11:52:03.562 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 11:57:37.484 00:00:10.516 TCP 1.101.0.1:3000 -> 23.104.0.1:45890 14 14292 1 2025-11-20 11:58:38.069 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 Summary: total flows: 137, total bytes: 428848, total packets: 1028, avg bps: 911, avg pps: 0, avg bpp: 417 Time window: 2025-11-20 10:56:03 - 2025-11-20 11:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0029s User: 0.0019s Wall: 0.0030s flows/second: 46299.2 Runtime: 0.0030s