Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 17:58:56.874 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 17:58:56.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 17:58:56.912 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 17:58:56.627 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 17:58:56.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 17:59:17.455 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43402 10 6452 1 2025-11-17 18:00:17.854 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51738 10 6452 1 2025-11-17 18:01:18.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55596 10 6452 1 2025-11-17 17:57:02.189 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:02:18.686 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55992 10 6452 1 2025-11-17 18:03:19.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51254 10 6452 1 2025-11-17 18:03:57.158 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:03:57.106 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:03:57.224 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:03:57.160 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:03:57.243 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 17:59:02.188 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:04:19.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54710 10 6452 1 2025-11-17 18:05:19.906 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52818 10 6452 1 2025-11-17 18:06:20.319 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53894 10 6452 1 2025-11-17 18:07:20.681 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42484 10 6452 1 2025-11-17 18:08:21.104 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-11-17 18:08:57.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:08:56.904 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:08:56.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:08:56.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:08:56.922 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:04:02.193 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:09:21.468 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46162 10 6452 1 2025-11-17 18:10:21.828 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:35388 10 6452 1 2025-11-17 18:06:02.191 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:11:22.266 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-11-17 18:12:22.666 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6452 1 2025-11-17 18:13:23.029 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36548 10 6452 1 2025-11-17 18:13:56.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:13:56.723 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:13:56.723 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:13:56.584 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:13:56.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:14:23.437 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54026 10 6452 1 2025-11-17 18:15:23.840 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-11-17 18:11:02.193 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:16:24.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43200 10 6452 1 2025-11-17 18:17:24.664 00:00:11.397 TCP 1.101.0.1:3000 -> 23.104.0.1:42940 10 6452 1 2025-11-17 18:13:02.192 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:18:26.112 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34014 10 6452 1 2025-11-17 18:18:57.216 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:18:57.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:18:57.212 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:18:57.234 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:18:57.299 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:19:26.477 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54150 10 6452 1 2025-11-17 18:20:26.880 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42656 10 6452 1 2025-11-17 18:21:27.242 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43096 10 6452 1 2025-11-17 18:22:27.652 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6452 1 2025-11-17 18:18:02.195 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:23:28.062 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-11-17 18:23:57.612 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:23:57.474 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:23:57.525 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:23:57.261 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:23:57.530 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:24:28.478 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58966 10 6452 1 2025-11-17 18:20:02.194 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:25:28.841 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:49608 10 6452 1 2025-11-17 18:26:29.225 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58296 10 6452 1 2025-11-17 18:27:29.644 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47484 10 6452 1 2025-11-17 18:28:30.053 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51666 10 6452 1 2025-11-17 18:28:57.250 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:28:57.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:28:57.540 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:28:57.168 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:28:57.168 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:29:30.458 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47660 10 6452 1 2025-11-17 18:25:02.197 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:30:30.861 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54626 10 6452 1 2025-11-17 18:31:31.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36876 10 6452 1 2025-11-17 18:27:02.196 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:32:31.681 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49948 10 6452 1 2025-11-17 18:33:32.053 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-11-17 18:33:57.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:33:57.490 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:33:57.697 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:33:57.481 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:33:57.564 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:34:32.458 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59896 10 6452 1 2025-11-17 18:35:32.865 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44226 10 6452 1 2025-11-17 18:36:33.274 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50536 10 6452 1 2025-11-17 18:32:02.198 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:37:33.688 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46822 10 6452 1 2025-11-17 18:38:34.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38080 10 6452 1 2025-11-17 18:38:57.559 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:38:57.556 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:38:57.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:38:57.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:38:57.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:34:02.195 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:39:34.514 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-11-17 18:40:34.923 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38790 10 6452 1 2025-11-17 18:41:35.331 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53658 10 6452 1 2025-11-17 18:42:35.696 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-11-17 18:43:36.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53222 10 6452 1 2025-11-17 18:43:57.906 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:43:57.597 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:43:57.588 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:43:57.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:43:57.823 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:39:02.198 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:44:36.517 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-11-17 18:45:36.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-11-17 18:41:02.197 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:46:37.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52832 10 6452 1 2025-11-17 18:47:37.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34542 10 6452 1 2025-11-17 18:48:38.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-17 18:48:57.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:48:57.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:48:57.928 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:48:57.876 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:48:58.011 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:49:38.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42524 10 6452 1 2025-11-17 18:50:38.922 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-11-17 18:46:02.199 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 18:51:39.537 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47912 12 6556 1 2025-11-17 18:52:39.945 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6452 1 2025-11-17 18:48:02.201 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 18:53:40.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55258 10 6452 1 2025-11-17 18:53:57.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:53:57.599 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:53:57.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:53:57.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:53:57.695 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:54:40.757 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-11-17 18:55:41.172 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48790 10 6452 1 2025-11-17 18:56:41.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52992 10 6452 1 2025-11-17 18:57:41.947 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52836 10 6452 1 2025-11-17 18:53:02.203 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 410529, total packets: 1010, avg bps: 882, avg pps: 0, avg bpp: 406 Time window: 2025-11-17 17:57:02 - 2025-11-17 18:59:02 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0029s User: 0.0019s Wall: 0.0019s flows/second: 73122.1 Runtime: 0.0019s