Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 15:54:03.629 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 15:59:28.637 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-11-20 16:00:22.952 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:00:22.870 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:00:22.895 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:00:22.870 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:00:23.001 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:00:29.053 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46306 10 6452 1 2025-11-20 16:01:29.457 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43976 10 6452 1 2025-11-20 15:57:03.629 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:02:29.864 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-11-20 16:03:30.235 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44818 10 6452 1 2025-11-20 16:04:30.645 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6452 1 2025-11-20 16:05:22.880 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:05:22.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:05:22.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:05:22.808 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:05:22.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:05:31.067 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60632 10 6452 1 2025-11-20 16:01:03.634 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:06:31.475 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38544 10 6452 1 2025-11-20 16:07:31.876 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-11-20 16:08:32.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 10 6452 1 2025-11-20 16:04:03.632 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:09:32.685 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35982 10 6452 1 2025-11-20 16:10:23.010 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:10:22.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:10:23.379 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:10:23.464 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:10:23.464 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:10:33.049 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6452 1 2025-11-20 16:11:33.416 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44694 10 6452 1 2025-11-20 16:12:33.821 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51230 10 6452 1 2025-11-20 16:08:03.634 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:13:34.222 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-11-20 16:14:34.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35742 10 6452 1 2025-11-20 16:15:22.997 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:15:23.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:15:23.083 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:15:22.914 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:15:23.231 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:15:34.989 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41020 10 6452 1 2025-11-20 16:11:03.632 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:16:35.356 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35564 10 6452 1 2025-11-20 16:17:35.712 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-11-20 16:18:36.108 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-11-20 16:19:36.514 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34560 10 6452 1 2025-11-20 16:15:03.637 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:20:23.091 00:00:00.053 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:20:23.026 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:20:23.077 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:20:23.009 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:20:23.238 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:20:36.876 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53248 10 6452 1 2025-11-20 16:21:37.261 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48028 10 6452 1 2025-11-20 16:22:37.671 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-11-20 16:18:03.638 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:23:38.123 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-11-20 16:24:38.535 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-11-20 16:25:23.396 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:25:23.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:25:23.361 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:25:23.313 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:25:23.368 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:25:38.913 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56396 10 6452 1 2025-11-20 16:26:39.323 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-11-20 16:22:03.642 00:06:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:27:39.732 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48004 10 6452 1 2025-11-20 16:28:40.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 2025-11-20 16:29:40.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46764 10 6452 1 2025-11-20 16:25:03.640 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:30:23.373 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:30:23.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:30:23.374 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:30:23.370 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:30:23.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:30:40.956 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33352 10 6452 1 2025-11-20 16:31:41.366 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43604 10 6452 1 2025-11-20 16:32:41.765 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:42604 10 6452 1 2025-11-20 16:33:42.142 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45068 10 6452 1 2025-11-20 16:29:03.644 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:34:42.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 12 6556 1 2025-11-20 16:35:23.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:35:23.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:35:23.405 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:35:23.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:35:23.577 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:35:42.956 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60954 10 6452 1 2025-11-20 16:36:43.323 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45882 10 6452 1 2025-11-20 16:32:03.641 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:37:43.727 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-11-20 16:38:44.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-11-20 16:39:44.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54624 10 6452 1 2025-11-20 16:40:23.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:40:23.386 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:40:23.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:40:23.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:40:23.872 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:40:44.952 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-11-20 16:36:03.644 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:41:45.322 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-11-20 16:42:45.725 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-20 16:43:46.141 00:00:10.705 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-11-20 16:39:03.641 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:44:46.902 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 12 6556 1 2025-11-20 16:45:23.729 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:45:23.709 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:45:23.666 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:45:23.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:45:23.749 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:45:47.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-11-20 16:46:47.731 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48066 10 6452 1 2025-11-20 16:47:48.163 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53410 10 6452 1 2025-11-20 16:43:03.645 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:48:48.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41542 10 6452 1 2025-11-20 16:49:48.974 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6452 1 2025-11-20 16:50:23.865 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:50:23.988 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:50:24.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:50:23.866 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:50:24.198 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:50:49.384 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-11-20 16:46:03.643 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:51:49.799 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-11-20 16:52:50.207 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43254 10 6452 1 2025-11-20 16:53:50.567 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46424 10 6452 1 2025-11-20 16:50:03.646 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:54:50.969 00:00:16.745 TCP 1.101.0.1:3000 -> 23.104.0.1:43418 10 6452 1 2025-11-20 16:55:23.808 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 16:55:23.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:55:23.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 16:55:23.820 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 16:55:23.885 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 16:55:57.761 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56880 10 6452 1 2025-11-20 16:56:58.179 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60384 10 6452 1 2025-11-20 16:53:03.644 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 16:57:58.577 00:00:12.403 TCP 1.101.0.1:3000 -> 23.104.0.1:51922 10 6452 1 Summary: total flows: 137, total bytes: 411494, total packets: 1026, avg bps: 844, avg pps: 0, avg bpp: 401 Time window: 2025-11-20 15:54:03 - 2025-11-20 16:59:03 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0032s User: 0.0021s Wall: 0.0020s flows/second: 68808.5 Runtime: 0.0020s