Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-21 19:54:04.232 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 19:59:08.806 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35798 10 6452 1 2025-11-21 20:00:09.203 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57436 10 6452 1 2025-11-21 20:00:56.513 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:00:56.396 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:00:56.358 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:00:56.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:00:56.442 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:01:09.610 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41832 10 6452 1 2025-11-21 20:02:10.017 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-11-21 20:03:10.424 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:59962 12 10375 1 2025-11-21 20:04:10.902 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33836 10 6452 1 2025-11-21 20:00:04.236 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:05:11.311 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-11-21 20:05:56.740 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:05:56.453 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:05:56.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:05:56.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:05:56.651 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:01:04.234 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:06:11.674 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-11-21 20:07:12.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60964 10 6452 1 2025-11-21 20:08:12.522 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 12 10375 1 2025-11-21 20:09:13.003 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6452 1 2025-11-21 20:10:13.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-11-21 20:10:56.766 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:10:56.757 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:10:56.780 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:10:56.682 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:10:56.687 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:11:13.817 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47484 10 6452 1 2025-11-21 20:07:04.238 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:12:14.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-11-21 20:08:04.235 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:13:14.591 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53852 10 6452 1 2025-11-21 20:14:15.000 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-11-21 20:15:15.401 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38158 10 6452 1 2025-11-21 20:15:56.913 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:15:56.974 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:15:56.904 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:15:56.965 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:15:56.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:16:15.805 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58164 10 6452 1 2025-11-21 20:17:16.205 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-11-21 20:18:16.604 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:59544 12 10375 1 2025-11-21 20:14:04.238 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:19:17.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-11-21 20:15:04.236 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:20:17.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50034 10 6452 1 2025-11-21 20:20:57.079 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:20:56.857 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:20:56.729 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:20:56.996 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:20:56.924 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:21:17.907 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37688 10 6452 1 2025-11-21 20:22:18.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56166 10 6452 1 2025-11-21 20:23:18.724 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 10 6452 1 2025-11-21 20:24:19.151 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:42254 10 6452 1 2025-11-21 20:25:19.639 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 10 6452 1 2025-11-21 20:25:56.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:25:56.826 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:25:56.908 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:25:56.985 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:25:56.910 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:21:04.241 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:26:20.063 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41584 10 6452 1 2025-11-21 20:22:04.239 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:27:20.465 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38340 10 6452 1 2025-11-21 20:28:20.865 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33368 10 6452 1 2025-11-21 20:29:21.275 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49356 10 6452 1 2025-11-21 20:30:21.672 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42356 10 6452 1 2025-11-21 20:30:56.931 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:30:56.991 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:30:57.192 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:30:57.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:30:57.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:31:22.096 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41492 10 6452 1 2025-11-21 20:32:22.499 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40834 10 6452 1 2025-11-21 20:28:04.244 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:33:22.901 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49192 10 6452 1 2025-11-21 20:29:04.242 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:34:23.264 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40550 10 6452 1 2025-11-21 20:35:23.701 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-11-21 20:35:57.456 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:35:57.414 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:35:57.467 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:35:57.312 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:35:57.549 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:36:24.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45360 10 6452 1 2025-11-21 20:37:24.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52514 10 6452 1 2025-11-21 20:38:24.923 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:38158 12 10369 1 2025-11-21 20:39:25.411 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39890 10 6452 1 2025-11-21 20:35:04.247 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:40:25.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44668 10 6452 1 2025-11-21 20:40:57.558 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:40:57.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:40:57.558 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:40:57.654 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:40:57.640 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:36:04.245 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:41:26.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49434 10 6452 1 2025-11-21 20:42:26.588 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54380 10 6452 1 2025-11-21 20:43:26.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43254 10 6452 1 2025-11-21 20:44:27.389 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57036 10 6452 1 2025-11-21 20:45:27.798 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 10 6452 1 2025-11-21 20:45:57.388 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:45:57.305 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:45:57.559 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:45:57.402 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:45:57.452 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:46:28.208 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41618 10 6452 1 2025-11-21 20:42:04.250 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:47:28.625 00:00:13.144 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-11-21 20:43:04.249 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:48:31.818 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60218 10 6452 1 2025-11-21 20:49:32.229 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:38748 10 6452 1 2025-11-21 20:50:32.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39984 10 6452 1 2025-11-21 20:50:57.399 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:50:57.497 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:50:57.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:50:57.384 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:50:57.562 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:51:32.990 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-11-21 20:52:33.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37768 10 6452 1 2025-11-21 20:53:33.797 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 12 10369 1 2025-11-21 20:49:04.253 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-21 20:54:34.232 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-11-21 20:50:04.252 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-21 20:55:34.633 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 10 6452 1 2025-11-21 20:55:57.687 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-21 20:55:57.654 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-21 20:55:57.479 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:55:57.605 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-21 20:55:57.537 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-21 20:56:35.033 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41504 10 6452 1 2025-11-21 20:57:35.434 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-11-21 20:58:35.842 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34912 10 6452 1 Summary: total flows: 137, total bytes: 436480, total packets: 1028, avg bps: 899, avg pps: 0, avg bpp: 424 Time window: 2025-11-21 19:54:04 - 2025-11-21 20:58:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0012s Wall: 0.0024s flows/second: 56842.4 Runtime: 0.0024s