Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 14:58:43.354 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 10 6452 1 2025-11-18 14:59:22.141 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:59:21.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:59:21.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:59:21.976 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:59:22.058 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:59:43.762 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36812 10 6452 1 2025-11-18 15:00:44.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6452 1 2025-11-18 15:01:44.554 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57058 10 6452 1 2025-11-18 14:57:02.609 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:02:45.010 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48154 10 6452 1 2025-11-18 15:03:45.368 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-11-18 14:59:02.606 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:04:22.335 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:04:21.888 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:04:21.943 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:04:22.376 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:04:22.458 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:04:45.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 10 6452 1 2025-11-18 15:05:46.186 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46994 10 6452 1 2025-11-18 15:06:46.556 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-11-18 15:07:46.960 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-11-18 15:08:47.324 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49510 10 6452 1 2025-11-18 15:04:02.609 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:09:22.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:09:22.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:09:22.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:09:22.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:09:22.386 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:09:47.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47970 10 6452 1 2025-11-18 15:10:48.134 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44454 10 6452 1 2025-11-18 15:06:02.608 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:11:48.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44968 10 6452 1 2025-11-18 15:12:48.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35588 10 6452 1 2025-11-18 15:13:49.357 00:00:16.293 TCP 1.101.0.1:3000 -> 23.104.0.1:42114 10 6452 1 2025-11-18 15:14:22.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:14:22.434 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:14:22.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:14:22.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:14:22.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:14:55.728 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-11-18 15:11:02.611 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:15:56.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45818 10 6452 1 2025-11-18 15:16:56.537 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-11-18 15:13:02.611 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:17:56.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33086 10 6452 1 2025-11-18 15:18:57.355 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47288 10 6452 1 2025-11-18 15:19:22.561 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:19:22.643 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:19:22.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:19:22.607 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:19:22.689 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:19:57.762 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-18 15:20:58.129 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38816 10 6452 1 2025-11-18 15:21:58.531 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51400 10 6452 1 2025-11-18 15:18:02.616 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:22:58.886 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 10 6452 1 2025-11-18 15:23:59.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35810 10 6452 1 2025-11-18 15:24:22.855 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:24:22.902 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:24:22.705 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:24:22.672 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:24:22.756 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:20:02.614 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:24:59.726 00:00:10.678 TCP 1.101.0.1:3000 -> 23.104.0.1:59812 10 6452 1 2025-11-18 15:26:00.446 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33886 10 6452 1 2025-11-18 15:27:00.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:52156 10 6452 1 2025-11-18 15:28:01.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-11-18 15:29:01.678 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-11-18 15:29:22.662 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:29:22.662 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:29:22.559 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:29:22.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:29:22.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:25:02.618 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:30:02.123 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49624 10 6452 1 2025-11-18 15:31:02.485 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-11-18 15:27:02.615 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:32:02.884 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60950 12 6556 1 2025-11-18 15:33:03.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33282 10 6452 1 2025-11-18 15:34:03.711 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44654 10 6452 1 2025-11-18 15:34:22.796 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:34:22.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:34:22.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:34:22.855 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:34:22.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:35:04.118 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42626 10 6452 1 2025-11-18 15:36:04.523 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-11-18 15:32:02.620 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:37:04.928 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:32934 10 6452 1 2025-11-18 15:38:05.352 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38744 10 6452 1 2025-11-18 15:34:02.617 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:39:05.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45320 10 6452 1 2025-11-18 15:39:23.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:39:23.091 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:39:22.978 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:39:23.002 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:39:23.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:40:06.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6452 1 2025-11-18 15:41:06.561 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 10 6452 1 2025-11-18 15:42:06.971 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54578 10 6452 1 2025-11-18 15:43:07.381 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6452 1 2025-11-18 15:39:02.620 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:44:23.062 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:44:07.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38400 10 6452 1 2025-11-18 15:44:22.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:44:22.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:44:22.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:44:22.979 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:45:08.180 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-11-18 15:41:02.617 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:46:08.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-18 15:47:08.989 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:36926 11 6504 1 2025-11-18 15:48:09.450 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-11-18 15:49:23.127 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:49:09.852 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-11-18 15:49:23.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:49:22.878 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:49:23.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:49:23.285 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:50:10.286 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-11-18 15:46:02.626 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:51:10.646 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-11-18 15:52:11.069 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39210 10 6452 1 2025-11-18 15:48:02.624 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:53:11.439 00:00:10.864 TCP 1.101.0.1:3000 -> 23.104.0.1:41356 10 6452 1 2025-11-18 15:54:23.633 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:54:23.208 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:54:23.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:54:23.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:54:12.341 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-11-18 15:54:23.446 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:55:12.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-11-18 15:56:13.149 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 12 6556 1 2025-11-18 15:57:13.563 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40104 10 6452 1 2025-11-18 15:53:02.626 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:58:13.972 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:50192 10 6452 1 Summary: total flows: 137, total bytes: 417137, total packets: 1023, avg bps: 897, avg pps: 0, avg bpp: 407 Time window: 2025-11-18 14:57:02 - 2025-11-18 15:59:02 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0010s Wall: 0.0026s flows/second: 53707.8 Runtime: 0.0026s