Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-08 01:59:17.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 01:59:17.872 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 01:59:17.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 01:59:17.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 01:59:17.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 01:59:35.767 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-11-08 02:00:36.183 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57168 10 6452 1 2025-11-08 02:01:36.591 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42802 10 6452 1 2025-11-08 01:57:56.991 00:05:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-08 02:02:36.991 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47702 10 6452 1 2025-11-08 01:58:56.988 00:05:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-08 02:03:37.416 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39238 10 6452 1 2025-11-08 02:04:17.966 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:04:17.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:04:17.689 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:04:17.642 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:04:17.724 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:04:37.789 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6452 1 2025-11-08 02:05:38.191 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42106 10 6452 1 2025-11-08 02:06:38.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37350 10 6452 1 2025-11-08 02:07:38.958 00:00:10.726 TCP 1.101.0.1:3000 -> 23.104.0.1:56994 10 6452 1 2025-11-08 02:03:56.993 00:05:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-08 02:08:39.725 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34394 10 6452 1 2025-11-08 02:04:56.989 00:05:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-08 02:09:17.949 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:09:17.896 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:09:17.975 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:09:17.997 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:09:18.080 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:09:40.136 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33292 10 6452 1 2025-11-08 02:10:40.500 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49042 10 6452 1 2025-11-08 02:11:40.861 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:59652 10 6452 1 2025-11-08 02:12:41.390 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36216 10 6452 1 2025-11-08 02:13:41.756 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35470 10 6452 1 2025-11-08 02:09:56.996 00:05:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-08 02:14:18.135 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:14:18.052 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:14:17.951 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:14:18.090 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:14:17.864 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:14:42.165 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52254 10 6452 1 2025-11-08 02:10:56.996 00:05:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-08 02:15:42.565 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38602 10 6452 1 2025-11-08 02:16:42.969 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46990 10 6452 1 2025-11-08 02:17:43.336 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:48692 12 10375 1 2025-11-08 02:18:43.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6452 1 2025-11-08 02:19:18.185 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:19:18.132 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:19:17.949 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:19:18.030 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:19:18.113 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:19:44.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40412 10 6452 1 2025-11-08 02:15:56.998 00:05:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-08 02:20:44.623 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-11-08 02:16:56.996 00:05:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-08 02:21:44.984 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36888 10 6452 1 2025-11-08 02:22:45.352 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40332 10 6452 1 2025-11-08 02:23:45.758 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39640 10 6452 1 2025-11-08 02:24:18.206 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:24:18.289 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:24:18.168 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:24:18.423 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:24:18.506 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:24:46.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49672 10 6452 1 2025-11-08 02:25:46.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43560 10 6452 1 2025-11-08 02:21:57.003 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 02:26:46.995 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-11-08 02:22:57.000 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 02:27:47.403 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-11-08 02:28:47.803 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-11-08 02:29:18.357 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:29:18.558 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:29:18.532 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:29:18.506 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:29:18.588 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:29:48.209 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 12 6556 1 2025-11-08 02:30:49.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52398 10 6452 1 2025-11-08 02:31:49.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-11-08 02:32:49.912 00:00:10.914 TCP 1.101.0.1:3000 -> 23.104.0.1:48264 10 6452 1 2025-11-08 02:28:57.003 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 02:33:50.865 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42422 10 6452 1 2025-11-08 02:34:18.040 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:34:18.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:34:18.369 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:34:18.464 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:34:18.547 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:29:57.002 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 02:34:51.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46128 10 6452 1 2025-11-08 02:35:51.677 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60934 10 6452 1 2025-11-08 02:36:52.100 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34142 10 6452 1 2025-11-08 02:37:52.501 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-11-08 02:38:52.905 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40460 10 6452 1 2025-11-08 02:39:18.257 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:39:18.594 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:39:18.459 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:39:18.638 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:39:18.721 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:39:53.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-11-08 02:35:57.012 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 02:40:53.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52256 10 6452 1 2025-11-08 02:36:57.007 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 02:41:54.101 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43580 10 6452 1 2025-11-08 02:42:54.461 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6452 1 2025-11-08 02:43:54.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58558 10 6452 1 2025-11-08 02:44:18.629 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:44:18.630 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:44:18.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:44:18.642 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:44:18.725 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:44:55.273 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37262 10 6452 1 2025-11-08 02:45:55.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34994 10 6452 1 2025-11-08 02:46:56.040 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-11-08 02:42:57.032 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 02:47:56.403 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:58338 12 10375 1 2025-11-08 02:43:57.034 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 02:48:56.881 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33296 10 6452 1 2025-11-08 02:49:19.160 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:49:19.197 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:49:18.851 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:49:19.120 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:49:19.205 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:49:57.293 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36398 10 6452 1 2025-11-08 02:50:57.694 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-11-08 02:51:58.111 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48430 10 6452 1 2025-11-08 02:52:58.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38678 10 6452 1 2025-11-08 02:53:58.881 00:00:10.624 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-11-08 02:54:18.967 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-08 02:54:18.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:54:18.975 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-08 02:54:18.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-08 02:54:19.059 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-08 02:49:57.037 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-08 02:54:59.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38388 10 6452 1 2025-11-08 02:50:57.036 00:06:00.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-08 02:55:59.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52448 10 6452 1 2025-11-08 02:57:00.363 00:00:10.962 TCP 1.101.0.1:3000 -> 23.104.0.1:40096 10 6452 1 2025-11-08 02:58:01.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44578 10 6452 1 Summary: total flows: 137, total bytes: 418252, total packets: 1012, avg bps: 925, avg pps: 0, avg bpp: 413 Time window: 2025-11-08 01:57:56 - 2025-11-08 02:58:11 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0024s User: 0.0024s Wall: 0.0020s flows/second: 67451.5 Runtime: 0.0021s