Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 17:59:33.613 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 10 6452 1 2025-11-20 18:00:25.237 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:00:25.273 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:00:25.320 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:00:25.374 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:00:25.403 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:00:34.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 10 6452 1 2025-11-20 17:56:03.668 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:01:34.438 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:33166 10 6452 1 2025-11-20 18:02:34.909 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 10 6452 1 2025-11-20 18:03:35.277 00:00:10.671 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-20 18:04:35.984 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49800 10 6452 1 2025-11-20 18:00:03.672 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:05:25.364 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:05:25.133 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:05:25.395 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:05:25.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:05:25.478 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:05:36.397 00:00:10.615 TCP 1.101.0.1:3000 -> 23.104.0.1:50640 10 6452 1 2025-11-20 18:06:37.064 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-11-20 18:07:37.471 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41372 10 6452 1 2025-11-20 18:03:03.671 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:08:37.835 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:54892 10 6452 1 2025-11-20 18:09:38.221 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 10 6452 1 2025-11-20 18:10:25.417 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:10:25.385 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:10:25.462 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:10:25.361 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:10:25.545 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:10:38.624 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38766 10 6452 1 2025-11-20 18:11:39.030 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-11-20 18:07:03.675 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:12:39.431 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 12 10369 1 2025-11-20 18:13:39.913 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46812 10 6452 1 2025-11-20 18:14:40.320 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32812 10 6452 1 2025-11-20 18:10:03.674 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:15:25.566 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:15:25.387 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:15:25.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:15:25.569 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:15:25.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:15:40.686 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58954 10 6452 1 2025-11-20 18:16:41.147 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-11-20 18:17:41.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47178 10 6452 1 2025-11-20 18:18:41.925 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 10 6452 1 2025-11-20 18:14:03.679 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:19:42.360 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42484 10 6452 1 2025-11-20 18:20:25.644 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:20:25.697 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:20:25.585 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:20:25.553 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:20:25.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:20:42.720 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50618 10 6452 1 2025-11-20 18:21:43.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44998 10 6452 1 2025-11-20 18:17:03.676 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:22:43.507 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-11-20 18:23:43.912 00:00:10.729 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6452 1 2025-11-20 18:24:44.676 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34786 10 6452 1 2025-11-20 18:25:25.741 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:25:25.480 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:25:25.834 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:25:25.832 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:25:25.930 00:00:00.012 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:25:45.039 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-11-20 18:21:03.679 00:06:00.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:26:45.445 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 10 6452 1 2025-11-20 18:27:45.847 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:52872 10 6452 1 2025-11-20 18:28:46.277 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6452 1 2025-11-20 18:24:03.678 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:29:46.632 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 10 6452 1 2025-11-20 18:30:25.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:30:25.849 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:30:25.812 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:30:25.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:30:25.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:30:47.023 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-11-20 18:31:47.504 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32962 10 6452 1 2025-11-20 18:32:47.903 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 12 6556 1 2025-11-20 18:28:03.681 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:33:48.317 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 10 6452 1 2025-11-20 18:34:48.733 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45138 10 6452 1 2025-11-20 18:35:25.658 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:35:26.436 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:35:26.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:35:26.353 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:35:26.130 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:35:49.109 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 10 6452 1 2025-11-20 18:31:03.681 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:36:49.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-11-20 18:37:49.919 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42390 10 6452 1 2025-11-20 18:38:50.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58092 10 6452 1 2025-11-20 18:39:50.735 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 10 6452 1 2025-11-20 18:35:03.683 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:40:26.122 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:40:25.774 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:40:26.061 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:40:26.039 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:40:26.115 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:40:51.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51000 10 6452 1 2025-11-20 18:41:51.543 00:00:10.730 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-11-20 18:38:03.681 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:42:52.315 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 10 6452 1 2025-11-20 18:43:52.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39318 10 6452 1 2025-11-20 18:44:53.110 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53738 10 6452 1 2025-11-20 18:45:26.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:45:26.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:45:26.181 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:45:26.059 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:45:26.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:45:53.523 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-11-20 18:42:03.684 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:46:53.928 00:00:12.757 TCP 1.101.0.1:3000 -> 23.104.0.1:55966 10 6452 1 2025-11-20 18:47:56.726 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 12 10369 1 2025-11-20 18:48:57.164 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-11-20 18:45:03.683 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:49:57.534 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40066 10 6452 1 2025-11-20 18:50:25.920 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:50:26.012 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:50:26.003 00:00:00.048 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:50:26.000 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:50:26.086 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:50:57.933 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57116 10 6452 1 2025-11-20 18:51:58.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-11-20 18:52:58.752 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:50264 10 6452 1 2025-11-20 18:49:03.688 00:06:00.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 18:53:59.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-11-20 18:54:59.518 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50210 10 6452 1 2025-11-20 18:55:26.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:55:26.486 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:55:26.469 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 18:55:26.477 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:55:26.551 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 18:55:59.878 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54072 10 6452 1 2025-11-20 18:52:03.685 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 18:57:00.239 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47872 10 6452 1 2025-11-20 18:58:00.644 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52920 10 6452 1 Summary: total flows: 136, total bytes: 418363, total packets: 1014, avg bps: 897, avg pps: 0, avg bpp: 412 Time window: 2025-11-20 17:56:03 - 2025-11-20 18:58:11 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0055s User: 0.0000s Wall: 0.0020s flows/second: 69285.2 Runtime: 0.0020s