Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 12:58:50.361 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-11-18 12:59:19.781 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:59:19.697 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:59:19.778 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:59:19.654 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:59:19.698 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:59:50.718 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57300 10 6452 1 2025-11-18 13:00:51.128 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-11-18 13:01:51.530 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37910 10 6452 1 2025-11-18 12:58:02.571 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:02:51.931 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:37334 10 6452 1 2025-11-18 13:03:52.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37228 10 6452 1 2025-11-18 13:04:19.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:04:20.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:04:20.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:04:20.382 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:04:20.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:04:52.763 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-11-18 13:00:02.569 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:05:53.182 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-11-18 13:06:53.581 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-11-18 13:07:53.993 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 10 6452 1 2025-11-18 13:08:54.394 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-11-18 13:09:19.923 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:09:19.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:09:19.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:09:19.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:09:19.839 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:05:02.574 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:09:54.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-11-18 13:10:55.206 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-11-18 13:07:02.571 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:11:55.609 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-11-18 13:12:56.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59618 10 6452 1 2025-11-18 13:13:56.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 10 6452 1 2025-11-18 13:14:19.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:14:20.224 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:14:20.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:14:20.066 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:14:20.149 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:14:56.833 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-11-18 13:15:57.245 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51066 10 6452 1 2025-11-18 13:12:02.574 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:16:57.643 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 12 10369 1 2025-11-18 13:17:58.143 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-11-18 13:14:02.571 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:18:58.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54098 10 6452 1 2025-11-18 13:19:19.995 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:19:20.162 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:19:20.095 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:19:20.101 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:19:20.184 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:19:58.965 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52292 10 6452 1 2025-11-18 13:20:59.328 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-11-18 13:21:59.750 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-11-18 13:23:00.154 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46638 10 6452 1 2025-11-18 13:19:02.576 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:24:00.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-11-18 13:24:20.273 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:24:20.163 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:24:20.259 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:24:20.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:24:20.191 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:25:00.959 00:00:10.749 TCP 1.101.0.1:3000 -> 23.104.0.1:48736 10 6452 1 2025-11-18 13:21:02.574 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:26:01.746 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57224 10 6452 1 2025-11-18 13:27:02.148 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53218 10 6452 1 2025-11-18 13:28:02.549 00:00:11.223 TCP 1.101.0.1:3000 -> 23.104.0.1:47046 10 6452 1 2025-11-18 13:29:03.812 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44636 10 6452 1 2025-11-18 13:29:20.418 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:29:20.337 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:29:20.139 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:29:20.336 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:29:20.390 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:30:04.222 00:00:10.644 TCP 1.101.0.1:3000 -> 23.104.0.1:49172 10 6452 1 2025-11-18 13:26:02.577 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:31:04.909 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 12 6556 1 2025-11-18 13:32:05.315 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:42336 10 6452 1 2025-11-18 13:28:02.575 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:33:05.820 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46688 10 6452 1 2025-11-18 13:34:06.200 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36186 10 6452 1 2025-11-18 13:34:20.590 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:34:20.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:34:20.762 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:34:20.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:34:20.846 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:35:06.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47254 10 6452 1 2025-11-18 13:36:07.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-11-18 13:37:07.443 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-11-18 13:33:02.578 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:38:07.847 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 10 6452 1 2025-11-18 13:39:08.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57566 10 6452 1 2025-11-18 13:39:20.529 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:39:20.618 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:39:20.407 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:39:20.448 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:39:20.565 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:35:02.576 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:40:08.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 12 6556 1 2025-11-18 13:41:09.036 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38302 10 6452 1 2025-11-18 13:42:09.435 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:37958 12 10375 1 2025-11-18 13:43:09.874 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-11-18 13:44:20.640 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:44:20.614 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:44:20.362 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:44:20.639 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:44:10.281 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56522 10 6452 1 2025-11-18 13:44:20.724 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:40:02.579 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:45:10.642 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40106 10 6452 1 2025-11-18 13:46:11.059 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59710 10 6452 1 2025-11-18 13:42:02.577 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:47:11.477 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35146 10 6452 1 2025-11-18 13:48:11.878 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57428 10 6452 1 2025-11-18 13:49:20.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:49:20.653 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:49:20.794 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:49:12.294 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59426 10 6452 1 2025-11-18 13:49:20.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:49:20.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:50:12.701 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44356 10 6452 1 2025-11-18 13:51:13.110 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47696 10 6452 1 2025-11-18 13:47:02.584 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:52:13.520 00:00:10.841 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6452 1 2025-11-18 13:53:14.402 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-11-18 13:49:02.582 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:54:20.868 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:54:20.791 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:54:20.748 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:54:21.011 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:54:20.833 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:54:14.820 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-11-18 13:55:15.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6452 1 2025-11-18 13:56:15.631 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56794 10 6452 1 2025-11-18 13:57:15.993 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46014 10 6452 1 2025-11-18 13:58:16.364 00:00:10.313 TCP 1.101.0.1:3000 -> 23.104.0.1:60338 10 6452 1 Summary: total flows: 136, total bytes: 424064, total packets: 1012, avg bps: 936, avg pps: 0, avg bpp: 419 Time window: 2025-11-18 12:58:02 - 2025-11-18 13:58:26 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0032s User: 0.0011s Wall: 0.0020s flows/second: 68037.4 Runtime: 0.0020s