Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 01:58:44.683 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49672 10 6452 1 2025-11-18 01:59:06.508 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 01:59:06.425 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 01:59:06.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 01:59:06.490 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 01:59:06.495 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 01:59:45.110 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34204 10 6452 1 2025-11-18 01:55:02.350 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:00:45.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39746 10 6452 1 2025-11-18 02:01:45.876 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35918 10 6452 1 2025-11-18 02:02:46.239 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-11-18 02:03:46.644 00:00:13.019 TCP 1.101.0.1:3000 -> 23.104.0.1:39370 10 6452 1 2025-11-18 02:04:06.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:04:06.703 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:04:06.511 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:04:06.707 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:04:06.790 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:00:02.353 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:04:49.701 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58538 10 6452 1 2025-11-18 02:05:50.119 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40832 10 6452 1 2025-11-18 02:06:50.481 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60188 10 6452 1 2025-11-18 02:02:02.351 00:06:00.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:07:50.905 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59280 12 6556 1 2025-11-18 02:08:51.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35754 10 6452 1 2025-11-18 02:09:07.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:09:07.258 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:09:07.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:09:07.296 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:09:07.342 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:09:51.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-11-18 02:10:52.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-11-18 02:11:52.538 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:39126 12 10375 1 2025-11-18 02:07:02.359 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:12:52.982 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-11-18 02:13:53.394 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 10 6452 1 2025-11-18 02:14:06.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:14:07.083 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:14:07.241 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:14:07.240 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:09:02.357 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:14:07.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:14:53.820 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50394 10 6452 1 2025-11-18 02:15:54.225 00:00:10.969 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-11-18 02:16:55.232 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47182 11 6504 1 2025-11-18 02:17:55.651 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41930 10 6452 1 2025-11-18 02:14:02.362 00:06:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:19:06.949 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:19:06.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:18:56.068 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49348 10 6452 1 2025-11-18 02:19:06.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:19:06.757 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:19:06.867 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:19:56.487 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-11-18 02:16:02.360 00:06:00.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:20:56.903 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 12 6556 1 2025-11-18 02:21:57.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46890 10 6452 1 2025-11-18 02:22:57.715 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6452 1 2025-11-18 02:24:07.087 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:24:06.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:24:06.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:23:58.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33712 12 6556 1 2025-11-18 02:24:07.046 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:24:07.128 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:24:58.523 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37762 10 6452 1 2025-11-18 02:21:02.365 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:25:58.934 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:50590 10 6452 1 2025-11-18 02:26:59.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-11-18 02:23:02.363 00:06:00.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:27:59.763 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-11-18 02:29:07.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:29:07.241 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:29:07.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:29:06.975 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:29:07.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:29:00.131 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43056 10 6452 1 2025-11-18 02:30:00.530 00:00:11.007 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-11-18 02:31:01.573 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-11-18 02:32:01.981 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36738 10 6452 1 2025-11-18 02:28:02.367 00:06:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:33:02.388 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52864 10 6452 1 2025-11-18 02:34:07.259 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:34:07.115 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:34:07.059 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:34:07.176 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:34:07.106 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:34:02.790 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6452 1 2025-11-18 02:30:02.365 00:06:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:35:03.677 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59864 10 6452 1 2025-11-18 02:36:04.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 10 6452 1 2025-11-18 02:37:04.439 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-18 02:38:04.848 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6452 1 2025-11-18 02:39:07.042 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:39:07.059 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:39:07.178 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:39:07.159 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:39:07.241 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:39:05.271 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-11-18 02:35:02.369 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:40:05.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48416 10 6452 1 2025-11-18 02:41:06.052 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-11-18 02:37:02.367 00:06:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:42:06.457 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-11-18 02:43:06.814 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6452 1 2025-11-18 02:44:07.216 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:44:07.300 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:44:07.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:44:07.301 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:44:07.383 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:44:07.218 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50110 10 6452 1 2025-11-18 02:45:07.574 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43270 10 6452 1 2025-11-18 02:46:07.942 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-11-18 02:42:02.371 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:47:08.359 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:58026 10 6452 1 2025-11-18 02:48:08.717 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36934 10 6452 1 2025-11-18 02:44:02.369 00:06:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:49:07.408 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:49:07.392 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:49:07.315 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:49:07.266 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:49:07.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:49:09.104 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40626 10 6452 1 2025-11-18 02:50:09.465 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 10 6452 1 2025-11-18 02:51:09.826 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46114 10 6452 1 2025-11-18 02:52:10.226 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41874 10 6452 1 2025-11-18 02:53:10.636 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-11-18 02:49:02.371 00:06:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 02:54:07.618 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 02:54:07.518 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 02:54:07.579 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:54:07.655 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 02:54:07.739 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 02:54:11.056 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-11-18 02:55:11.472 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55892 10 6452 1 2025-11-18 02:51:02.370 00:06:00.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 02:56:11.875 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47634 10 6452 1 2025-11-18 02:57:12.285 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55884 10 6452 1 2025-11-18 02:58:12.652 00:00:12.159 TCP 1.101.0.1:3000 -> 23.104.0.1:48914 10 6452 1 Summary: total flows: 137, total bytes: 421164, total packets: 1027, avg bps: 886, avg pps: 0, avg bpp: 410 Time window: 2025-11-18 01:55:02 - 2025-11-18 02:58:24 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0025s User: 0.0025s Wall: 0.0024s flows/second: 58171.7 Runtime: 0.0024s