Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 20:59:01.086 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-11-20 20:56:03.737 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:00:01.451 00:00:22.580 TCP 1.101.0.1:3000 -> 23.104.0.1:58154 10 6452 1 2025-11-20 21:00:28.888 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:00:28.834 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:00:28.936 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:00:28.847 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:00:29.019 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:01:14.110 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-11-20 21:02:14.474 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-11-20 21:03:14.832 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-11-20 21:00:03.740 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:04:15.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59330 10 6452 1 2025-11-20 21:05:15.625 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41678 10 6452 1 2025-11-20 21:05:28.975 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:05:28.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:05:28.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:05:28.892 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:05:28.741 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:02:03.739 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:06:16.022 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56848 10 6452 1 2025-11-20 21:07:16.433 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39974 10 6452 1 2025-11-20 21:08:16.828 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44102 10 6452 1 2025-11-20 21:09:17.228 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59958 10 6452 1 2025-11-20 21:06:03.742 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:10:29.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:10:29.204 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:10:17.631 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-11-20 21:10:29.159 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:10:29.267 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:10:29.242 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:11:18.036 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6452 1 2025-11-20 21:08:03.740 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:12:18.400 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6452 1 2025-11-20 21:13:18.800 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47350 10 6452 1 2025-11-20 21:14:19.180 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-11-20 21:15:29.068 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:15:29.081 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:15:19.546 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46260 10 6452 1 2025-11-20 21:15:29.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:15:29.201 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:15:29.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:12:03.743 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:16:19.944 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55154 10 6452 1 2025-11-20 21:17:20.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-11-20 21:14:03.740 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:18:20.719 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 11 6492 1 2025-11-20 21:19:21.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37118 10 6452 1 2025-11-20 21:20:29.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:20:29.128 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:20:29.165 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:20:29.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:20:29.248 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:20:21.543 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 10 6452 1 2025-11-20 21:21:21.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 10 6452 1 2025-11-20 21:18:03.744 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:22:22.401 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53748 10 6452 1 2025-11-20 21:23:22.769 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-11-20 21:20:03.742 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:24:23.191 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 10 6452 1 2025-11-20 21:25:30.158 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:25:30.308 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:25:29.086 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:25:30.076 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:25:30.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:25:23.603 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-11-20 21:26:23.974 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6452 1 2025-11-20 21:27:24.390 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59186 10 6452 1 2025-11-20 21:24:03.750 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:28:24.794 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:43066 10 6452 1 2025-11-20 21:29:25.168 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47074 10 6452 1 2025-11-20 21:26:03.746 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:30:29.512 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:30:29.468 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:30:29.319 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:30:29.418 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:30:29.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:30:25.571 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 10 6452 1 2025-11-20 21:31:25.982 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37780 10 6452 1 2025-11-20 21:32:26.385 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-11-20 21:33:26.795 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60104 10 6452 1 2025-11-20 21:30:03.754 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:34:27.203 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-11-20 21:35:29.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:35:29.508 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:35:29.528 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:35:29.492 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:35:29.514 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:35:27.566 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53800 10 6452 1 2025-11-20 21:32:03.753 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:36:27.931 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:35402 10 6452 1 2025-11-20 21:37:28.437 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-11-20 21:38:28.839 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:33182 10 6452 1 2025-11-20 21:39:29.222 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 10 6452 1 2025-11-20 21:36:03.755 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:40:29.595 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:40:29.610 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:40:29.677 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:40:29.512 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:40:29.495 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:40:29.619 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-11-20 21:41:30.022 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-11-20 21:38:03.752 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:42:30.428 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42868 10 6452 1 2025-11-20 21:43:30.834 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-11-20 21:44:31.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52500 10 6452 1 2025-11-20 21:45:29.733 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:45:29.924 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:45:29.961 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:45:29.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:45:30.045 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:45:31.683 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-11-20 21:42:03.756 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:46:32.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52034 10 6452 1 2025-11-20 21:47:32.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6452 1 2025-11-20 21:44:03.753 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:48:32.919 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:56546 10 6452 1 2025-11-20 21:49:33.307 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55168 10 6452 1 2025-11-20 21:50:29.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:50:29.624 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:50:29.778 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:50:29.978 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:50:29.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:50:33.673 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49728 10 6452 1 2025-11-20 21:51:34.054 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6452 1 2025-11-20 21:48:03.757 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:52:34.455 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-11-20 21:53:34.831 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-11-20 21:50:03.757 00:05:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-20 21:54:35.194 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-11-20 21:55:29.983 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 21:55:29.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 21:55:29.773 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:55:29.902 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 21:55:30.074 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 21:55:35.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-11-20 21:56:36.005 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:42800 10 6452 1 2025-11-20 21:57:36.400 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:49886 12 10375 1 2025-11-20 21:54:03.760 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-20 21:58:36.887 00:00:10.915 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 Summary: total flows: 140, total bytes: 420963, total packets: 1023, avg bps: 890, avg pps: 0, avg bpp: 411 Time window: 2025-11-20 20:56:03 - 2025-11-20 21:59:04 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0054s User: 0.0011s Wall: 0.0024s flows/second: 58018.2 Runtime: 0.0024s