Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 08:58:57.223 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51290 10 6452 1 2025-11-21 08:56:03.971 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 08:59:57.629 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45952 10 6452 1 2025-11-21 09:00:43.588 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:00:43.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:00:43.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:00:43.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:00:43.377 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:00:58.032 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43056 10 6452 1 2025-11-21 09:01:58.434 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56130 10 6452 1 2025-11-21 09:02:58.833 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:43578 10 6452 1 2025-11-21 09:00:03.976 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:03:59.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-11-21 09:04:59.629 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39204 10 6452 1 2025-11-21 09:05:43.399 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:05:43.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:05:43.226 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:05:43.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:05:43.310 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:02:03.974 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:06:00.063 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46144 10 6452 1 2025-11-21 09:07:00.463 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56570 10 6452 1 2025-11-21 09:08:00.829 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54372 10 6452 1 2025-11-21 09:09:01.257 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-11-21 09:06:03.975 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:10:01.662 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43700 10 6452 1 2025-11-21 09:10:43.219 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:10:43.276 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:10:43.376 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:10:43.364 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:10:43.358 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:11:02.098 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-11-21 09:08:03.974 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:12:02.503 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56430 10 6452 1 2025-11-21 09:13:02.903 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59664 10 6452 1 2025-11-21 09:14:03.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6452 1 2025-11-21 09:15:03.716 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58558 10 6452 1 2025-11-21 09:15:43.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:15:43.879 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:15:44.035 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:15:43.940 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:15:44.118 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:12:03.977 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:16:04.138 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54360 10 6452 1 2025-11-21 09:17:04.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48488 10 6452 1 2025-11-21 09:14:03.974 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:18:04.938 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52178 10 6452 1 2025-11-21 09:19:05.356 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50486 10 6452 1 2025-11-21 09:20:05.720 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57876 10 6452 1 2025-11-21 09:20:43.705 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:20:43.586 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:20:43.649 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:20:43.700 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:20:43.733 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:21:06.126 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50874 10 6452 1 2025-11-21 09:18:03.978 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:22:06.535 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 2025-11-21 09:23:06.938 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-11-21 09:20:03.976 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:24:07.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48162 10 6452 1 2025-11-21 09:25:07.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53432 10 6452 1 2025-11-21 09:25:43.746 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:25:43.739 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:25:43.639 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:25:43.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:25:43.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:26:08.171 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38122 10 6452 1 2025-11-21 09:27:08.583 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 10 6452 1 2025-11-21 09:24:03.979 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:28:08.991 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54188 10 6452 1 2025-11-21 09:29:09.393 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51050 10 6452 1 2025-11-21 09:26:03.976 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:30:09.789 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44048 10 6452 1 2025-11-21 09:30:44.001 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:30:43.802 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:30:43.866 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:30:44.119 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:30:43.949 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:31:10.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36440 10 6452 1 2025-11-21 09:32:10.563 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-11-21 09:33:10.977 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49338 10 6452 1 2025-11-21 09:30:03.980 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:34:11.387 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-11-21 09:35:11.804 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:52518 11 6504 1 2025-11-21 09:35:43.913 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:35:43.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:35:43.979 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:35:43.931 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:35:44.073 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:32:03.979 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:36:12.264 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55288 10 6452 1 2025-11-21 09:37:12.632 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37544 10 6452 1 2025-11-21 09:38:13.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44288 10 6452 1 2025-11-21 09:39:13.460 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41504 10 6452 1 2025-11-21 09:36:03.983 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:40:13.870 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53740 10 6452 1 2025-11-21 09:40:44.057 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:40:44.182 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:40:43.957 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:40:43.963 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:40:44.080 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:41:14.241 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-11-21 09:38:03.978 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:42:14.602 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59918 10 6452 1 2025-11-21 09:43:15.019 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47474 10 6452 1 2025-11-21 09:44:15.379 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36100 10 6452 1 2025-11-21 09:45:15.792 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33832 10 6452 1 2025-11-21 09:45:44.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:45:44.165 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:45:43.987 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:45:44.175 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:45:44.160 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:42:03.984 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:46:16.201 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47440 10 6452 1 2025-11-21 09:47:16.565 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 10 6452 1 2025-11-21 09:44:03.981 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:48:16.967 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36698 10 6452 1 2025-11-21 09:49:17.335 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51654 10 6452 1 2025-11-21 09:50:17.737 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-11-21 09:50:44.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:50:44.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:50:44.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:50:44.577 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:50:44.519 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:51:18.148 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33408 10 6452 1 2025-11-21 09:48:03.985 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:52:18.550 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-11-21 09:53:18.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49176 10 6452 1 2025-11-21 09:50:03.981 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-21 09:54:19.363 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 6452 1 2025-11-21 09:55:19.774 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35968 10 6452 1 2025-11-21 09:55:44.212 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 09:55:44.050 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:55:44.513 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 09:55:44.317 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 09:55:44.596 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 09:56:20.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59504 10 6452 1 2025-11-21 09:57:20.594 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49250 10 6452 1 2025-11-21 09:54:03.986 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-21 09:58:21.014 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54894 10 6452 1 Summary: total flows: 140, total bytes: 417052, total packets: 1021, avg bps: 882, avg pps: 0, avg bpp: 408 Time window: 2025-11-21 08:56:03 - 2025-11-21 09:59:04 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0030s Wall: 0.0018s flows/second: 77518.5 Runtime: 0.0018s