Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 07:59:13.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 07:59:13.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 07:59:13.540 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 07:59:13.662 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 07:59:13.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 07:59:34.546 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-11-18 08:00:34.951 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-11-18 08:01:35.324 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-11-18 07:57:02.479 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:02:35.731 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38920 10 6452 1 2025-11-18 08:03:36.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50670 10 6452 1 2025-11-18 07:59:02.476 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:04:13.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:04:13.781 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:04:13.640 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:04:13.773 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:04:13.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:04:36.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-11-18 08:05:36.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56348 10 6452 1 2025-11-18 08:06:37.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40054 10 6452 1 2025-11-18 08:07:37.732 00:00:11.158 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-11-18 08:08:38.930 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41854 10 6452 1 2025-11-18 08:04:02.481 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:09:13.789 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:09:13.643 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:09:13.734 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:09:13.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:09:13.873 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:09:39.353 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32860 10 6452 1 2025-11-18 08:10:39.761 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-11-18 08:06:02.478 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:11:40.172 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 2025-11-18 08:12:40.578 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-11-18 08:13:40.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60622 10 6452 1 2025-11-18 08:14:14.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:14:13.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:14:13.875 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:14:13.940 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:14:13.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:14:41.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37534 10 6452 1 2025-11-18 08:15:41.761 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33620 10 6452 1 2025-11-18 08:11:02.482 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:16:42.189 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44790 10 6452 1 2025-11-18 08:17:42.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42998 10 6452 1 2025-11-18 08:13:02.480 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:18:42.967 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-11-18 08:19:14.009 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:19:13.959 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:19:14.011 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:19:13.923 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:19:14.094 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:19:43.379 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 10 6452 1 2025-11-18 08:20:43.776 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 10 6452 1 2025-11-18 08:21:44.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-11-18 08:22:44.583 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 10 6452 1 2025-11-18 08:18:02.484 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:23:44.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43270 10 6452 1 2025-11-18 08:24:13.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:24:13.840 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:24:13.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:24:13.946 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:24:14.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:24:45.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53608 10 6452 1 2025-11-18 08:20:02.482 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:25:45.796 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:42918 10 6452 1 2025-11-18 08:26:46.178 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-11-18 08:27:46.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34572 10 6452 1 2025-11-18 08:28:46.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34036 10 6452 1 2025-11-18 08:29:14.184 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:29:14.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:29:14.132 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:29:14.276 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:29:14.359 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:29:47.368 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:40564 10 6452 1 2025-11-18 08:25:02.484 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:30:47.723 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33314 10 6452 1 2025-11-18 08:31:48.127 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-11-18 08:27:02.484 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:32:48.533 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42626 10 6452 1 2025-11-18 08:33:48.933 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:48036 10 6452 1 2025-11-18 08:34:14.594 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:34:14.437 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:34:14.436 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:34:14.114 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:34:14.512 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:34:49.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39228 10 6452 1 2025-11-18 08:35:49.760 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:36114 10 6452 1 2025-11-18 08:36:50.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-11-18 08:32:02.488 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:37:50.587 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34046 10 6452 1 2025-11-18 08:34:02.486 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:38:51.001 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56312 10 6452 1 2025-11-18 08:39:14.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:39:14.547 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:39:14.427 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:39:14.412 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:39:14.494 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:39:51.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40044 10 6452 1 2025-11-18 08:40:51.773 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40234 10 6452 1 2025-11-18 08:41:52.186 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57032 10 6452 1 2025-11-18 08:42:52.591 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50306 10 6452 1 2025-11-18 08:43:52.948 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48544 10 6452 1 2025-11-18 08:39:02.489 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:44:14.568 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:44:14.667 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:44:14.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:44:14.430 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:44:14.486 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:44:53.359 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 10 6452 1 2025-11-18 08:41:02.486 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:45:53.763 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44992 10 6452 1 2025-11-18 08:46:54.227 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:42416 12 10375 1 2025-11-18 08:47:54.703 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39658 10 6452 1 2025-11-18 08:48:55.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52570 10 6452 1 2025-11-18 08:49:14.523 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:49:14.526 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:49:14.641 00:00:00.018 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:49:14.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:49:14.771 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:49:55.521 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46668 10 6452 1 2025-11-18 08:46:02.491 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:50:55.880 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:35226 12 6556 1 2025-11-18 08:51:56.333 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34878 10 6452 1 2025-11-18 08:48:02.488 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 08:52:56.696 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42920 10 6452 1 2025-11-18 08:54:14.806 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 08:53:57.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-11-18 08:54:14.804 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 08:54:14.923 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 08:54:14.733 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:54:14.723 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 08:54:57.516 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40346 10 6452 1 2025-11-18 08:55:57.884 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-11-18 08:56:58.289 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36122 10 6452 1 2025-11-18 08:53:02.492 00:06:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 08:57:58.713 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53382 10 6452 1 Summary: total flows: 136, total bytes: 414452, total packets: 1012, avg bps: 891, avg pps: 0, avg bpp: 409 Time window: 2025-11-18 07:57:02 - 2025-11-18 08:59:02 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0012s Wall: 0.0012s flows/second: 113427.2 Runtime: 0.0012s