Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 19:59:27.102 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6452 1 2025-11-20 19:56:03.714 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:00:27.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:00:27.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:00:27.714 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:00:27.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:00:27.797 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:00:27.505 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34552 10 6452 1 2025-11-20 20:01:27.902 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 12 6556 1 2025-11-20 20:02:28.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34114 10 6452 1 2025-11-20 20:03:28.713 00:00:10.662 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-11-20 20:00:03.716 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:04:29.418 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-11-20 20:05:27.730 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:05:27.790 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:05:27.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:05:27.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:05:27.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:05:29.886 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:58132 10 6452 1 2025-11-20 20:02:03.714 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:06:30.267 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-11-20 20:07:30.677 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-11-20 20:08:31.102 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-11-20 20:09:31.466 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-11-20 20:06:03.718 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:10:27.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:10:27.946 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:10:27.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:10:27.904 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:10:27.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:10:31.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33934 10 6452 1 2025-11-20 20:11:32.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39170 10 6452 1 2025-11-20 20:08:03.717 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:12:32.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33100 10 6452 1 2025-11-20 20:13:33.040 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45514 10 6452 1 2025-11-20 20:14:33.441 00:00:20.052 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-11-20 20:15:28.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:15:28.076 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:15:28.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:15:27.936 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:15:28.161 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:15:43.529 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33540 10 6452 1 2025-11-20 20:12:03.718 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:16:43.929 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38608 10 6452 1 2025-11-20 20:17:44.354 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 10 6452 1 2025-11-20 20:14:03.717 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:18:44.714 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51836 10 6452 1 2025-11-20 20:19:45.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-11-20 20:20:28.085 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:20:27.831 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:20:27.854 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:20:28.003 00:00:00.047 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:20:28.011 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:20:45.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-11-20 20:21:45.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-11-20 20:18:03.720 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:22:46.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35054 10 6452 1 2025-11-20 20:23:46.718 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-11-20 20:20:03.720 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:24:47.137 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36304 10 6452 1 2025-11-20 20:25:28.096 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:25:28.285 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:25:28.227 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:25:28.017 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:25:27.931 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:25:47.542 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47994 10 6452 1 2025-11-20 20:26:47.903 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 12 6556 1 2025-11-20 20:27:48.310 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-11-20 20:24:03.723 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:28:48.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57126 10 6452 1 2025-11-20 20:29:49.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-11-20 20:26:03.720 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:30:28.232 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:30:28.167 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:30:28.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:30:28.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:30:28.314 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:30:49.534 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58896 10 6452 1 2025-11-20 20:31:49.901 00:00:10.735 TCP 1.101.0.1:3000 -> 23.104.0.1:41680 10 6452 1 2025-11-20 20:32:50.688 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48286 10 6452 1 2025-11-20 20:33:51.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45152 10 6452 1 2025-11-20 20:30:03.722 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:34:51.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-11-20 20:35:28.420 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:35:28.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:35:28.506 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:35:28.427 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:35:28.589 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:35:51.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50134 10 6452 1 2025-11-20 20:32:03.721 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:36:52.312 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-11-20 20:37:52.688 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-11-20 20:38:53.059 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-11-20 20:39:53.465 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53082 10 6452 1 2025-11-20 20:36:03.728 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:40:28.705 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:40:28.394 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:40:28.313 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:40:28.624 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:40:28.575 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:40:53.863 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-11-20 20:41:54.287 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-11-20 20:38:03.725 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:42:54.692 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36144 10 6452 1 2025-11-20 20:43:55.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-11-20 20:44:55.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48096 10 6452 1 2025-11-20 20:45:28.720 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:45:28.346 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:45:28.606 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:45:28.639 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:45:28.464 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:42:03.735 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:45:55.918 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:49984 10 6452 1 2025-11-20 20:46:56.347 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:44028 10 6452 1 2025-11-20 20:44:03.734 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:47:56.705 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56998 10 6452 1 2025-11-20 20:48:57.094 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35930 10 6452 1 2025-11-20 20:49:57.498 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-11-20 20:50:28.601 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:50:28.786 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:50:28.600 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:50:28.641 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:50:28.685 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:50:57.905 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-11-20 20:48:03.738 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:51:58.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6452 1 2025-11-20 20:52:58.681 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57082 10 6452 1 2025-11-20 20:50:03.736 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 20:53:59.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37656 10 6452 1 2025-11-20 20:54:59.511 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-11-20 20:55:29.054 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 20:55:28.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:55:28.857 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 20:55:28.986 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 20:55:28.941 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 20:55:59.914 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38208 10 6452 1 2025-11-20 20:57:00.275 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45986 10 6452 1 2025-11-20 20:54:03.740 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 20:58:00.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44014 10 6452 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 869, avg pps: 0, avg bpp: 405 Time window: 2025-11-20 19:56:03 - 2025-11-20 20:59:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0022s Wall: 0.0024s flows/second: 56945.5 Runtime: 0.0025s