Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 06:58:45.517 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36846 10 6452 1 2025-11-21 06:59:45.883 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43300 12 6556 1 2025-11-21 06:56:03.934 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:00:40.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:00:40.679 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:00:40.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:00:40.763 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:00:40.984 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:00:46.306 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-11-21 07:01:46.667 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-11-21 07:02:47.095 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41644 10 6452 1 2025-11-21 07:03:47.465 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 10 6452 1 2025-11-21 07:00:03.936 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:04:47.866 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41258 10 6452 1 2025-11-21 07:05:40.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:05:40.743 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:05:40.824 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:05:40.855 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:05:40.849 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:05:48.290 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33418 10 6452 1 2025-11-21 07:02:03.934 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:06:48.723 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52140 10 6452 1 2025-11-21 07:07:49.138 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-11-21 07:08:49.540 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6452 1 2025-11-21 07:09:49.950 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50172 10 6452 1 2025-11-21 07:06:03.940 00:05:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:10:40.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:10:41.058 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:10:41.002 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:10:41.109 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:10:41.192 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:10:50.370 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53450 10 6452 1 2025-11-21 07:08:03.937 00:05:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:11:50.786 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39984 10 6452 1 2025-11-21 07:12:51.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-11-21 07:13:51.558 00:00:11.605 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-11-21 07:14:53.202 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42534 10 6452 1 2025-11-21 07:15:41.185 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:15:41.256 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:15:41.227 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:15:41.229 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:15:41.309 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:12:03.942 00:05:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:15:53.606 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54688 10 6452 1 2025-11-21 07:16:54.008 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41344 10 6452 1 2025-11-21 07:17:54.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38516 10 6452 1 2025-11-21 07:14:03.940 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:18:54.804 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58988 10 6452 1 2025-11-21 07:19:55.211 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-11-21 07:20:41.310 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:20:41.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:20:41.254 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:20:41.228 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:20:41.286 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:20:55.617 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32926 10 6452 1 2025-11-21 07:18:03.943 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:21:56.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58192 10 6452 1 2025-11-21 07:22:56.420 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-11-21 07:20:03.942 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:23:56.826 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-11-21 07:24:57.196 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35054 10 6452 1 2025-11-21 07:25:41.181 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:25:41.458 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:25:41.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:25:41.436 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:25:41.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:25:57.606 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-11-21 07:26:57.969 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45872 10 6452 1 2025-11-21 07:24:03.943 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:27:58.370 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 12 10369 1 2025-11-21 07:28:58.860 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6452 1 2025-11-21 07:26:03.941 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:29:59.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34808 10 6452 1 2025-11-21 07:30:41.607 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:30:41.529 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:30:41.247 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:30:41.524 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:30:41.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:30:59.683 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-11-21 07:32:00.118 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-11-21 07:33:00.535 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43122 10 6452 1 2025-11-21 07:30:03.949 00:05:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:34:00.902 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-11-21 07:35:01.268 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6452 1 2025-11-21 07:35:41.407 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:35:41.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:35:41.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:35:41.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:35:41.762 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:32:03.946 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:36:01.658 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54208 10 6452 1 2025-11-21 07:37:02.090 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57254 10 6452 1 2025-11-21 07:38:02.496 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 12 10375 1 2025-11-21 07:39:02.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45730 10 6452 1 2025-11-21 07:36:03.954 00:05:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:40:03.386 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42426 10 6452 1 2025-11-21 07:40:42.904 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:40:43.101 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:40:43.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:40:43.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:40:43.430 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:41:03.786 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41758 10 6452 1 2025-11-21 07:38:03.952 00:05:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:42:04.188 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-11-21 07:43:04.545 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-11-21 07:44:04.946 00:00:19.023 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 10 6452 1 2025-11-21 07:45:14.008 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-11-21 07:45:41.896 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:45:41.613 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:45:41.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:45:41.814 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:45:41.613 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:42:03.957 00:05:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:46:14.411 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40794 10 6452 1 2025-11-21 07:47:14.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-11-21 07:44:03.954 00:05:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:48:15.216 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 10 6452 1 2025-11-21 07:49:15.620 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55054 10 6452 1 2025-11-21 07:50:16.023 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-11-21 07:50:41.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:50:41.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:50:41.839 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:50:41.857 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:50:41.934 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:51:16.422 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42988 10 6452 1 2025-11-21 07:48:03.956 00:05:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:52:16.786 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53236 10 6452 1 2025-11-21 07:53:17.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39460 10 6452 1 2025-11-21 07:50:03.955 00:05:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 07:54:17.593 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42982 10 6452 1 2025-11-21 07:55:18.000 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-11-21 07:55:42.143 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 07:55:41.987 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:55:42.140 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 07:55:42.070 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 07:55:42.223 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 07:56:18.402 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-11-21 07:57:18.768 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50052 10 6452 1 2025-11-21 07:54:03.957 00:05:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 07:58:19.173 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 899, avg pps: 0, avg bpp: 414 Time window: 2025-11-21 06:56:03 - 2025-11-21 07:59:04 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0025s Wall: 0.0022s flows/second: 64336.9 Runtime: 0.0022s