Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 14:58:54.852 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 10 6452 1 2025-11-20 14:54:03.608 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 14:59:55.295 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-11-20 15:00:21.689 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.557 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:00:21.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.508 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.771 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:00:55.703 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-11-20 15:01:56.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 10 6452 1 2025-11-20 14:58:03.609 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:02:56.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6452 1 2025-11-20 15:03:56.929 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-11-20 15:04:57.336 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-11-20 15:05:22.045 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:05:22.063 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:05:21.803 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:05:21.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:05:21.885 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:01:03.610 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:05:57.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53384 10 6452 1 2025-11-20 15:06:58.146 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-11-20 15:07:58.548 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43694 10 6452 1 2025-11-20 15:08:58.947 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 10 6452 1 2025-11-20 15:05:03.614 00:06:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:09:59.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53248 10 6452 1 2025-11-20 15:10:21.706 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:10:21.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:10:21.675 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:10:21.624 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:10:21.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:10:59.716 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54764 10 6452 1 2025-11-20 15:12:00.120 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 10 6452 1 2025-11-20 15:08:03.612 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:13:00.521 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55918 10 6452 1 2025-11-20 15:14:00.917 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-11-20 15:15:01.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-11-20 15:15:21.906 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:15:21.930 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:15:21.903 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:15:21.825 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:15:22.072 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:16:01.691 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45860 10 6452 1 2025-11-20 15:12:03.618 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:17:02.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-11-20 15:18:02.516 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54214 10 6452 1 2025-11-20 15:19:02.920 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57926 10 6452 1 2025-11-20 15:15:03.616 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:20:03.314 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-20 15:20:21.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:20:21.855 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:20:22.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:20:21.915 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:20:22.160 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:21:03.677 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 10 6452 1 2025-11-20 15:22:04.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57806 10 6452 1 2025-11-20 15:23:04.513 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40710 10 6452 1 2025-11-20 15:19:03.621 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:24:04.955 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6452 1 2025-11-20 15:25:05.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-11-20 15:25:21.936 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:25:22.136 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:25:22.182 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:25:22.040 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:25:22.267 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:26:05.737 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59502 10 6452 1 2025-11-20 15:22:03.619 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:27:06.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39340 10 6452 1 2025-11-20 15:28:06.512 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-11-20 15:29:06.904 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34382 10 6452 1 2025-11-20 15:30:07.314 00:00:12.895 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-11-20 15:30:22.353 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:30:22.269 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:30:22.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:30:22.269 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:30:22.339 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:26:03.625 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:31:10.253 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-11-20 15:32:10.656 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-11-20 15:33:11.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-11-20 15:29:03.623 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:34:11.499 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55286 10 6452 1 2025-11-20 15:35:22.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:35:22.179 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:35:22.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:35:22.427 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:35:22.333 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:35:11.860 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 10 6452 1 2025-11-20 15:36:12.272 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 10 6452 1 2025-11-20 15:37:12.637 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 10 6452 1 2025-11-20 15:33:03.626 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:38:13.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 10 6452 1 2025-11-20 15:39:13.442 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 10 6452 1 2025-11-20 15:40:22.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:40:22.448 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:40:22.386 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:40:13.838 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6452 1 2025-11-20 15:40:22.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:40:22.363 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:36:03.623 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:41:14.264 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46120 10 6452 1 2025-11-20 15:42:14.667 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 10 6452 1 2025-11-20 15:43:15.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-11-20 15:44:15.506 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:32804 10 6452 1 2025-11-20 15:40:03.627 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:45:22.668 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:45:22.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.556 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.585 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.469 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:45:15.877 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59942 10 6452 1 2025-11-20 15:46:16.309 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-11-20 15:47:16.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-11-20 15:43:03.624 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:48:17.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33118 10 6452 1 2025-11-20 15:49:17.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41708 10 6452 1 2025-11-20 15:50:23.101 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:50:22.545 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:50:22.716 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:50:23.154 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:50:22.799 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:50:17.946 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 10 6452 1 2025-11-20 15:51:18.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-11-20 15:47:03.628 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:52:18.714 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43132 10 6452 1 2025-11-20 15:53:19.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 10 6452 1 2025-11-20 15:54:19.505 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 10 6452 1 2025-11-20 15:50:03.626 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 15:55:22.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 15:55:22.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:55:22.639 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:55:22.442 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:55:22.634 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 15:55:19.907 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53700 10 6452 1 2025-11-20 15:56:20.316 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-11-20 15:57:20.677 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39008 10 6452 1 2025-11-20 15:58:21.110 00:00:17.485 TCP 1.101.0.1:3000 -> 23.104.0.1:39116 10 6452 1 Summary: total flows: 137, total bytes: 416877, total packets: 1018, avg bps: 860, avg pps: 0, avg bpp: 409 Time window: 2025-11-20 14:54:03 - 2025-11-20 15:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0020s Wall: 0.0023s flows/second: 59800.2 Runtime: 0.0023s