Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 18:58:42.322 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-11-17 18:58:57.998 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 18:58:57.919 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 18:58:57.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:58:57.915 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 18:58:57.909 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 18:59:42.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 2025-11-17 18:55:02.200 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:00:43.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34634 10 6452 1 2025-11-17 19:01:43.538 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41356 10 6452 1 2025-11-17 19:02:43.909 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:35758 10 6452 1 2025-11-17 19:03:44.381 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-11-17 19:03:57.977 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:03:57.938 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:03:57.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:03:58.087 00:00:00.052 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:03:57.970 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:04:44.780 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39920 10 6452 1 2025-11-17 19:00:02.205 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:05:45.145 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49148 10 6452 1 2025-11-17 19:06:45.549 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43822 10 6452 1 2025-11-17 19:02:02.202 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:07:45.949 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-11-17 19:08:58.230 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:08:58.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:08:57.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:08:58.240 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:08:46.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40862 10 6452 1 2025-11-17 19:08:58.322 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:09:46.752 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48532 10 6452 1 2025-11-17 19:10:47.115 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 10 6452 1 2025-11-17 19:11:47.524 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 12 10375 1 2025-11-17 19:07:02.208 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:12:48.003 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-11-17 19:13:58.235 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:13:58.062 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:13:48.397 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-11-17 19:13:57.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:13:58.297 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:13:58.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:09:02.206 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:14:48.763 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-11-17 19:15:49.185 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52016 10 6452 1 2025-11-17 19:16:49.547 00:00:10.515 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 14 14292 1 2025-11-17 19:17:50.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37594 10 6452 1 2025-11-17 19:18:58.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:18:58.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:18:58.300 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:18:58.495 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:18:58.578 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:18:50.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37402 10 6452 1 2025-11-17 19:14:02.209 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:19:50.931 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58694 10 6452 1 2025-11-17 19:20:51.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-11-17 19:16:02.207 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:21:51.760 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57636 10 6452 1 2025-11-17 19:22:52.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44760 10 6452 1 2025-11-17 19:23:58.496 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:23:58.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:23:58.422 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:23:58.161 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:23:58.415 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:23:52.585 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-11-17 19:24:52.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60888 10 6452 1 2025-11-17 19:21:02.209 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:25:53.393 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-11-17 19:26:53.768 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48186 10 6452 1 2025-11-17 19:23:02.207 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:27:54.135 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35006 10 6452 1 2025-11-17 19:28:58.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:28:58.714 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:28:58.527 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:28:58.370 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:28:58.616 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:28:54.499 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46004 10 6452 1 2025-11-17 19:29:54.919 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38804 10 6452 1 2025-11-17 19:30:55.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39836 10 6452 1 2025-11-17 19:31:55.736 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60402 10 6452 1 2025-11-17 19:28:02.210 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:32:56.148 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:39270 12 6556 1 2025-11-17 19:33:58.918 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:33:58.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:33:59.023 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:33:59.054 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:33:59.002 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:33:56.709 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52420 10 6452 1 2025-11-17 19:30:02.209 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:34:57.116 00:00:14.688 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6452 1 2025-11-17 19:36:01.863 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-11-17 19:37:02.236 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:32820 10 6452 1 2025-11-17 19:38:02.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57656 10 6452 1 2025-11-17 19:38:58.552 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:38:58.814 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:38:58.601 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:38:58.810 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:38:58.897 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:39:03.048 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37936 10 6452 1 2025-11-17 19:35:02.213 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:40:03.448 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34380 10 6452 1 2025-11-17 19:41:03.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42940 10 6452 1 2025-11-17 19:37:02.212 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:42:04.215 00:00:10.939 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-11-17 19:43:05.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6452 1 2025-11-17 19:43:58.789 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:43:58.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:43:58.873 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:43:58.772 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:43:58.854 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:44:05.594 00:00:10.940 TCP 1.101.0.1:3000 -> 23.104.0.1:54370 10 6452 1 2025-11-17 19:45:06.574 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34984 10 6452 1 2025-11-17 19:46:06.980 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38178 10 6452 1 2025-11-17 19:42:02.215 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:47:07.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6452 1 2025-11-17 19:48:07.798 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:59762 10 6452 1 2025-11-17 19:48:59.110 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:48:58.904 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:48:58.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:48:58.794 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:48:58.877 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:44:02.214 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:49:08.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52140 10 6452 1 2025-11-17 19:50:08.596 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-11-17 19:51:09.002 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55854 10 6452 1 2025-11-17 19:52:09.365 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34216 10 6452 1 2025-11-17 19:53:09.771 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-11-17 19:53:59.182 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 19:53:59.175 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 19:53:59.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 19:53:59.116 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:53:59.098 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 19:49:02.217 00:06:00.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 19:54:10.146 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:34422 11 6504 1 2025-11-17 19:55:10.601 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58630 10 6452 1 2025-11-17 19:51:02.215 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 19:56:10.961 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49730 10 6452 1 2025-11-17 19:57:11.362 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57346 10 6452 1 2025-11-17 19:58:11.720 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 Summary: total flows: 137, total bytes: 428796, total packets: 1027, avg bps: 902, avg pps: 0, avg bpp: 417 Time window: 2025-11-17 18:55:02 - 2025-11-17 19:58:22 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0000s Wall: 0.0022s flows/second: 63662.7 Runtime: 0.0022s