Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 03:59:30.282 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6870 1 2025-11-21 03:56:03.881 00:05:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:00:37.518 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:00:37.475 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:00:37.002 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:00:37.435 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:00:37.190 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:00:31.065 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60418 10 6870 1 2025-11-21 04:01:31.474 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6870 1 2025-11-21 04:02:31.874 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6870 1 2025-11-21 04:03:32.239 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6870 1 2025-11-21 04:00:03.883 00:05:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:04:32.601 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6870 1 2025-11-21 04:05:37.224 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:05:37.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:05:37.450 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:05:37.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:05:37.532 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:05:33.008 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6870 1 2025-11-21 04:02:03.882 00:05:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:06:33.415 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6870 1 2025-11-21 04:07:33.823 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:50186 12 10375 1 2025-11-21 04:08:34.307 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48770 10 6452 1 2025-11-21 04:09:34.713 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46042 10 6452 1 2025-11-21 04:06:03.885 00:05:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:10:37.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:10:37.424 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:10:37.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:10:37.547 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:10:37.729 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:10:35.122 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-11-21 04:11:35.532 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-11-21 04:08:03.882 00:05:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:12:35.898 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-11-21 04:13:36.307 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-11-21 04:14:36.733 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-11-21 04:15:37.859 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:15:37.709 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:15:37.730 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:15:37.777 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:15:37.650 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:15:37.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44358 10 6452 1 2025-11-21 04:12:03.887 00:05:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:16:37.544 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47688 10 6452 1 2025-11-21 04:17:37.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-11-21 04:14:03.884 00:05:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:18:38.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-11-21 04:19:38.760 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38236 10 6452 1 2025-11-21 04:20:37.881 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:20:37.730 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:20:37.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:20:37.836 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:20:37.791 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:20:39.190 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 2025-11-21 04:21:39.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46602 12 6556 1 2025-11-21 04:18:03.889 00:05:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:22:39.949 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58492 10 6452 1 2025-11-21 04:23:40.373 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56568 10 6452 1 2025-11-21 04:20:03.886 00:05:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:24:40.781 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39664 10 6452 1 2025-11-21 04:25:37.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:25:37.861 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:25:37.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:25:37.659 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:25:37.925 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:25:41.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55986 10 6452 1 2025-11-21 04:26:41.602 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-11-21 04:27:41.962 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-11-21 04:24:03.893 00:05:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:28:42.365 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51600 10 6452 1 2025-11-21 04:29:42.782 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-11-21 04:26:03.889 00:05:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:30:37.963 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:30:37.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:30:37.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:30:37.880 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:30:37.880 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:30:43.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54720 10 6452 1 2025-11-21 04:31:43.589 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-11-21 04:32:43.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60600 10 6452 1 2025-11-21 04:33:44.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-11-21 04:30:03.895 00:05:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:34:44.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56018 10 6452 1 2025-11-21 04:35:38.003 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:35:37.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:35:37.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:35:37.920 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:35:38.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:35:45.212 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47648 10 6452 1 2025-11-21 04:32:03.891 00:05:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:36:45.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54010 10 6452 1 2025-11-21 04:37:46.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6452 1 2025-11-21 04:38:46.424 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-11-21 04:39:46.830 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57862 10 6452 1 2025-11-21 04:36:03.898 00:05:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:40:37.837 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:40:37.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:40:38.178 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:40:37.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:40:38.262 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:40:47.231 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-11-21 04:41:47.633 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-11-21 04:38:03.896 00:05:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:42:47.996 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46776 10 6452 1 2025-11-21 04:43:48.411 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-11-21 04:44:48.816 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-11-21 04:45:38.242 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:45:37.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:45:38.307 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:45:38.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:45:38.389 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:45:49.224 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34816 10 6452 1 2025-11-21 04:42:03.899 00:05:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:46:49.645 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50922 10 6452 1 2025-11-21 04:47:50.059 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-11-21 04:44:03.896 00:05:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:48:50.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33124 10 6452 1 2025-11-21 04:49:50.865 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47824 10 6452 1 2025-11-21 04:50:38.253 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:50:38.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:50:38.179 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:50:38.264 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:50:38.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:50:51.231 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46902 10 6452 1 2025-11-21 04:51:51.632 00:00:11.032 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-11-21 04:48:03.901 00:05:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:52:52.704 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34860 10 6452 1 2025-11-21 04:53:53.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-21 04:50:03.899 00:05:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 04:54:53.514 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-11-21 04:55:38.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 04:55:38.436 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 04:55:38.562 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:55:38.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 04:55:38.550 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 04:55:53.884 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-11-21 04:56:54.288 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-11-21 04:54:03.902 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 04:57:54.686 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55968 10 6452 1 Summary: total flows: 139, total bytes: 417919, total packets: 1014, avg bps: 884, avg pps: 0, avg bpp: 412 Time window: 2025-11-21 03:56:03 - 2025-11-21 04:59:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0054s User: 0.0011s Wall: 0.0020s flows/second: 70813.6 Runtime: 0.0020s