Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 11:59:38.481 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6452 1 2025-11-20 12:00:18.000 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:00:17.986 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:00:18.132 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:00:17.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:00:17.927 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:00:38.881 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 12 6556 1 2025-11-20 11:56:03.566 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:01:39.319 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40440 10 6452 1 2025-11-20 12:02:39.682 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33748 10 6452 1 2025-11-20 12:03:40.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-11-20 11:59:03.564 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:04:40.509 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 10 6452 1 2025-11-20 12:05:18.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:05:18.217 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:05:18.171 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:05:18.274 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:05:18.254 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:05:40.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-20 12:06:41.323 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56954 10 6452 1 2025-11-20 12:07:41.732 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45254 10 6452 1 2025-11-20 12:03:03.565 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:08:42.136 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35350 10 6452 1 2025-11-20 12:09:42.553 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33314 10 6452 1 2025-11-20 12:10:17.987 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:10:17.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:10:18.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:10:17.996 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:10:18.356 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:10:42.920 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-11-20 12:06:03.565 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:11:43.314 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 2025-11-20 12:12:43.717 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 12 10369 1 2025-11-20 12:13:44.219 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47404 10 6452 1 2025-11-20 12:14:44.630 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41960 10 6452 1 2025-11-20 12:10:03.569 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:15:18.403 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:15:18.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:15:18.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:15:18.406 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:15:18.564 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:15:44.997 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-11-20 12:16:45.410 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 10 6452 1 2025-11-20 12:17:45.820 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-11-20 12:13:03.567 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:18:46.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52870 10 6452 1 2025-11-20 12:19:46.638 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40638 10 6452 1 2025-11-20 12:20:18.366 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:20:18.450 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:20:18.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:20:17.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:20:18.448 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:20:47.008 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60282 10 6452 1 2025-11-20 12:21:47.409 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39264 10 6452 1 2025-11-20 12:17:03.569 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:22:47.812 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48226 10 6452 1 2025-11-20 12:23:48.221 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-11-20 12:24:48.581 00:00:10.608 TCP 1.101.0.1:3000 -> 23.104.0.1:40092 10 6452 1 2025-11-20 12:20:03.568 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:25:18.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:25:18.458 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:25:18.631 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:25:18.373 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:25:18.713 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:25:49.224 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35224 10 6452 1 2025-11-20 12:26:49.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41700 10 6452 1 2025-11-20 12:27:49.985 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-11-20 12:28:50.414 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-11-20 12:24:03.571 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:29:50.815 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-11-20 12:30:18.583 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:30:18.494 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:30:18.716 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:30:18.489 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:30:18.610 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:30:51.187 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60650 10 6452 1 2025-11-20 12:27:03.570 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:31:51.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-11-20 12:32:51.995 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37034 10 6452 1 2025-11-20 12:33:52.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36616 10 6452 1 2025-11-20 12:34:52.760 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:56200 10 6452 1 2025-11-20 12:35:18.635 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:35:18.751 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:35:18.895 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:35:18.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:35:18.978 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:35:53.189 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49262 10 6452 1 2025-11-20 12:31:03.574 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:36:53.593 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-11-20 12:37:53.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50302 10 6452 1 2025-11-20 12:34:03.573 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:38:54.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-11-20 12:39:54.766 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-11-20 12:40:19.133 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:40:18.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:40:18.828 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:40:19.185 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:40:18.912 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:40:55.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-11-20 12:41:55.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35772 10 6452 1 2025-11-20 12:38:03.576 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:42:55.942 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38960 10 6452 1 2025-11-20 12:43:56.357 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-11-20 12:44:56.763 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38386 10 6452 1 2025-11-20 12:45:19.149 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:45:19.192 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:45:19.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:45:19.134 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:45:19.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:41:03.575 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:45:57.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-11-20 12:46:57.594 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33472 10 6452 1 2025-11-20 12:47:57.959 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-11-20 12:48:58.377 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45306 10 6452 1 2025-11-20 12:45:03.577 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:49:58.777 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51214 10 6452 1 2025-11-20 12:50:19.080 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:50:18.712 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:50:19.078 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:50:18.966 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:50:19.158 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:50:59.189 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45916 10 6452 1 2025-11-20 12:51:59.592 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51192 10 6452 1 2025-11-20 12:48:03.576 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 12:52:59.950 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 13 13955 1 2025-11-20 12:54:00.434 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59336 10 6452 1 2025-11-20 12:55:00.843 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-11-20 12:55:19.108 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 12:55:19.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:55:18.997 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 12:55:19.113 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 12:55:19.080 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 12:56:01.276 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48192 10 6452 1 2025-11-20 12:52:03.578 00:06:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 12:57:01.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6452 1 2025-11-20 12:58:02.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40186 10 6452 1 Summary: total flows: 136, total bytes: 421949, total packets: 1015, avg bps: 905, avg pps: 0, avg bpp: 415 Time window: 2025-11-20 11:56:03 - 2025-11-20 12:58:12 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0059s User: 0.0000s Wall: 0.0020s flows/second: 66638.5 Runtime: 0.0021s