Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 15:59:23.509 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:59:14.369 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48202 10 6452 1 2025-11-18 15:59:23.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:59:22.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:59:23.426 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:59:23.386 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:55:02.624 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:00:14.783 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-11-18 16:01:15.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 12 6556 1 2025-11-18 16:02:15.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6452 1 2025-11-18 16:03:15.992 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35430 10 6452 1 2025-11-18 16:04:23.648 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:04:23.643 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:04:23.689 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:04:23.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:04:23.565 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:04:16.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49706 10 6452 1 2025-11-18 16:00:02.628 00:06:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:05:16.790 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53220 10 6452 1 2025-11-18 16:06:17.203 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52468 10 6452 1 2025-11-18 16:02:02.626 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:07:17.610 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53518 10 6452 1 2025-11-18 16:08:17.970 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60448 10 6452 1 2025-11-18 16:09:23.416 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:09:23.627 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:09:23.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:09:23.571 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:09:23.654 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:09:18.374 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34100 10 6452 1 2025-11-18 16:10:18.740 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-11-18 16:11:19.161 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52440 10 6452 1 2025-11-18 16:07:02.630 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:12:19.568 00:00:10.845 TCP 1.101.0.1:3000 -> 23.104.0.1:50666 12 10375 1 2025-11-18 16:13:20.458 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46470 10 6452 1 2025-11-18 16:09:02.629 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:14:24.248 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:14:24.056 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:14:23.641 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:14:24.056 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:14:24.139 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:14:20.861 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36244 10 6452 1 2025-11-18 16:15:21.291 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6452 1 2025-11-18 16:16:21.695 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45802 10 6452 1 2025-11-18 16:17:22.112 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:47636 10 6452 1 2025-11-18 16:18:22.511 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-11-18 16:14:02.634 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:19:23.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:19:23.732 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:19:23.563 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:19:23.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:19:23.808 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:19:22.913 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39412 10 6452 1 2025-11-18 16:20:23.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54992 10 6452 1 2025-11-18 16:16:02.632 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:21:23.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38670 10 6452 1 2025-11-18 16:22:24.137 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-18 16:23:24.546 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57112 10 6452 1 2025-11-18 16:24:24.029 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:24:24.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:24:23.955 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:24:23.997 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:24:23.947 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:24:24.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48062 10 6452 1 2025-11-18 16:25:25.314 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58938 10 6452 1 2025-11-18 16:21:02.637 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:26:25.670 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53858 10 6452 1 2025-11-18 16:27:26.034 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6452 1 2025-11-18 16:23:02.635 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:28:26.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48116 10 6452 1 2025-11-18 16:29:23.849 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:29:23.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:29:23.856 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:29:23.823 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:29:23.932 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:29:26.840 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-11-18 16:30:27.264 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55136 10 6452 1 2025-11-18 16:31:27.623 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 10 6452 1 2025-11-18 16:32:27.987 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-18 16:28:02.639 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:33:28.346 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-11-18 16:34:23.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:34:24.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:34:23.802 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:34:24.150 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:34:24.232 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:34:28.749 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56352 10 6452 1 2025-11-18 16:30:02.637 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:35:29.114 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-11-18 16:36:29.512 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6452 1 2025-11-18 16:37:29.911 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43748 10 6452 1 2025-11-18 16:38:30.326 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43988 10 6452 1 2025-11-18 16:39:24.250 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:39:24.170 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:39:24.106 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:39:23.870 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:39:24.167 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:39:30.734 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-11-18 16:35:02.641 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:40:31.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-11-18 16:41:31.526 00:00:11.503 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6452 1 2025-11-18 16:37:02.637 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:42:33.108 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-11-18 16:43:33.535 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-11-18 16:44:24.387 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:44:24.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:44:24.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:44:24.053 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:44:24.137 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:44:33.934 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33146 10 6452 1 2025-11-18 16:45:34.349 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-11-18 16:46:34.751 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6452 1 2025-11-18 16:42:02.642 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:47:35.153 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-18 16:48:35.561 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43036 10 6452 1 2025-11-18 16:44:02.641 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:49:24.184 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:49:24.200 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:49:24.174 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:49:24.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:49:24.196 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:49:35.966 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-11-18 16:50:36.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53586 10 6452 1 2025-11-18 16:51:36.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60944 10 6452 1 2025-11-18 16:52:37.179 00:00:11.030 TCP 1.101.0.1:3000 -> 23.104.0.1:60264 10 6452 1 2025-11-18 16:53:38.245 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-11-18 16:49:02.643 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:54:24.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:54:24.440 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:54:24.074 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:54:24.340 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:54:24.422 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:54:38.646 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59760 10 6452 1 2025-11-18 16:55:39.048 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59958 10 6452 1 2025-11-18 16:51:02.642 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:56:39.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43294 10 6452 1 2025-11-18 16:57:39.859 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40684 10 6452 1 Summary: total flows: 136, total bytes: 414452, total packets: 1012, avg bps: 880, avg pps: 0, avg bpp: 409 Time window: 2025-11-18 15:55:02 - 2025-11-18 16:57:50 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0041s User: 0.0010s Wall: 0.0013s flows/second: 103113.8 Runtime: 0.0013s