Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 18:59:01.049 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-11-20 19:00:01.457 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-11-20 19:00:26.523 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:00:26.359 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:00:26.481 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:00:26.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:00:26.448 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:56:03.690 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 19:01:01.822 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35792 10 6452 1 2025-11-20 19:02:02.257 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35232 10 6452 1 2025-11-20 19:03:02.663 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53302 10 6452 1 2025-11-20 18:59:03.689 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 19:04:03.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 10 6452 1 2025-11-20 19:05:03.506 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 10 6452 1 2025-11-20 19:05:26.460 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:05:26.420 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:05:26.460 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:05:26.376 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:05:26.544 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:06:03.912 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 12 6556 1 2025-11-20 19:07:04.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55896 10 6452 1 2025-11-20 19:03:03.691 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 19:08:04.728 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55934 10 6452 1 2025-11-20 19:09:05.139 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42784 10 6452 1 2025-11-20 19:10:05.537 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58156 10 6452 1 2025-11-20 19:10:26.615 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:10:26.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:10:26.496 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:10:26.533 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:10:26.680 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:06:03.690 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 19:11:05.937 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-11-20 19:12:06.343 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-11-20 19:13:06.745 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35686 10 6452 1 2025-11-20 19:14:07.148 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44314 10 6452 1 2025-11-20 19:10:03.692 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 19:15:07.547 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44872 10 6452 1 2025-11-20 19:15:26.853 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:15:26.457 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:15:26.500 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:15:26.771 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:15:26.662 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:16:07.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-11-20 19:17:08.314 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39634 10 6452 1 2025-11-20 19:13:03.691 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 19:18:08.717 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 10 6452 1 2025-11-20 19:19:09.102 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 10 6452 1 2025-11-20 19:20:09.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-11-20 19:20:27.526 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:20:27.609 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:20:27.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:20:27.717 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:20:27.366 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:21:09.922 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48188 10 6452 1 2025-11-20 19:17:03.694 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 19:22:10.287 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38348 10 6452 1 2025-11-20 19:23:10.683 00:00:10.532 TCP 1.101.0.1:3000 -> 23.104.0.1:51190 10 6452 1 2025-11-20 19:20:03.695 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 19:24:11.250 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55766 10 6452 1 2025-11-20 19:25:11.652 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54244 10 6452 1 2025-11-20 19:25:27.068 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:25:26.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:25:26.953 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:25:26.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:25:27.034 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:26:12.065 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6452 1 2025-11-20 19:27:12.469 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 10 6452 1 2025-11-20 19:24:03.700 00:05:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 19:28:12.872 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42136 10 6452 1 2025-11-20 19:29:13.273 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-11-20 19:26:03.702 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 19:30:13.827 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59234 10 6452 1 2025-11-20 19:30:27.188 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:30:27.003 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:30:26.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:30:27.105 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:30:27.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:31:14.232 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43022 10 6452 1 2025-11-20 19:32:14.663 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-11-20 19:33:15.110 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-11-20 19:30:03.707 00:05:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 19:34:15.532 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43734 10 6452 1 2025-11-20 19:35:27.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:35:27.061 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:35:27.180 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:35:27.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:35:27.245 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:35:15.940 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-11-20 19:32:03.704 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 19:36:16.319 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46512 10 6452 1 2025-11-20 19:37:16.725 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45852 10 6452 1 2025-11-20 19:38:17.108 00:00:11.766 TCP 1.101.0.1:3000 -> 23.104.0.1:45906 10 6452 1 2025-11-20 19:39:18.907 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55284 10 6452 1 2025-11-20 19:36:03.707 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 19:40:19.313 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 10 6452 1 2025-11-20 19:40:27.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:40:27.336 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:40:27.783 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:40:27.793 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:40:27.866 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:41:19.718 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55286 10 6452 1 2025-11-20 19:38:03.704 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 19:42:20.129 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60150 10 6452 1 2025-11-20 19:43:20.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 10 6452 1 2025-11-20 19:44:20.939 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-11-20 19:45:27.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:45:27.376 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:45:27.256 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:45:27.320 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:45:27.319 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:45:21.356 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-11-20 19:42:03.711 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 19:46:21.719 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 10 6452 1 2025-11-20 19:47:22.127 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 10 6452 1 2025-11-20 19:44:03.710 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 19:48:22.542 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 10 6452 1 2025-11-20 19:49:22.909 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54512 10 6452 1 2025-11-20 19:50:27.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:50:27.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:50:27.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:50:27.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:50:27.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:50:23.323 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39828 10 6452 1 2025-11-20 19:51:23.762 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:34272 10 6452 1 2025-11-20 19:48:03.716 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 19:52:24.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-11-20 19:53:24.552 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43052 10 6452 1 2025-11-20 19:50:03.713 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 19:54:24.948 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57400 10 6452 1 2025-11-20 19:55:27.770 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 19:55:27.688 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:55:27.617 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:55:27.619 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:55:27.638 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 19:55:25.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-11-20 19:56:25.767 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35656 10 6452 1 2025-11-20 19:57:26.190 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 12 10375 1 2025-11-20 19:54:03.717 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 19:58:26.668 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 Summary: total flows: 139, total bytes: 421150, total packets: 1026, avg bps: 891, avg pps: 0, avg bpp: 410 Time window: 2025-11-20 18:56:03 - 2025-11-20 19:59:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0016s Wall: 0.0024s flows/second: 58676.4 Runtime: 0.0024s