Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 18:58:55.472 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57278 10 6452 1 2025-11-18 18:59:26.671 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 18:59:26.791 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 18:59:26.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 18:59:26.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 18:59:26.941 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 18:55:02.682 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 18:59:55.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35610 10 6452 1 2025-11-18 19:00:56.280 00:00:11.926 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 12 6556 1 2025-11-18 18:57:02.680 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:01:58.247 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51250 10 6452 1 2025-11-18 19:02:58.648 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:48070 12 10584 1 2025-11-18 19:03:59.141 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53898 10 6661 1 2025-11-18 19:04:26.978 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:04:27.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:04:26.816 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:04:27.101 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:04:27.182 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:04:59.501 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:44496 10 6661 1 2025-11-18 19:05:59.885 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 12 6765 1 2025-11-18 19:02:02.684 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:07:00.302 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48630 10 6661 1 2025-11-18 19:08:00.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48608 10 6661 1 2025-11-18 19:04:02.681 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:09:01.112 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6661 1 2025-11-18 19:09:27.056 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:09:27.229 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:09:26.895 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:09:27.033 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:09:26.974 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:10:01.522 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51846 10 6661 1 2025-11-18 19:11:01.936 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:59576 10 6661 1 2025-11-18 19:12:02.367 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55174 10 6661 1 2025-11-18 19:13:02.768 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6661 1 2025-11-18 19:09:02.684 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:14:03.183 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 10 6661 1 2025-11-18 19:14:27.679 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:14:27.646 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:14:27.653 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:14:27.668 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:14:27.597 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:15:03.585 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44104 10 6661 1 2025-11-18 19:11:02.682 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:16:03.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52166 10 6661 1 2025-11-18 19:17:04.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6661 1 2025-11-18 19:18:04.797 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6661 1 2025-11-18 19:19:05.211 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34196 11 6701 1 2025-11-18 19:19:27.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:19:27.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:19:27.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:19:27.036 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:19:27.120 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:20:05.615 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6661 1 2025-11-18 19:16:02.686 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:21:06.024 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39840 10 6661 1 2025-11-18 19:22:06.445 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6661 1 2025-11-18 19:18:02.684 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:23:06.843 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:58876 10 6661 1 2025-11-18 19:24:07.269 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34324 10 6661 1 2025-11-18 19:24:27.518 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:24:27.496 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:24:27.436 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:24:27.436 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:24:27.436 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:25:07.676 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39856 10 6661 1 2025-11-18 19:26:08.116 00:00:23.837 TCP 1.101.0.1:3000 -> 23.104.0.1:37044 10 6661 1 2025-11-18 19:27:22.023 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6661 1 2025-11-18 19:23:02.691 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:28:22.426 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58884 10 6661 1 2025-11-18 19:29:27.437 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:29:27.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:29:27.348 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:29:27.729 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:29:27.812 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:29:22.829 00:00:10.942 TCP 1.101.0.1:3000 -> 23.104.0.1:56764 10 6661 1 2025-11-18 19:25:02.688 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:30:23.813 00:00:15.640 TCP 1.101.0.1:3000 -> 23.104.0.1:50120 10 6661 1 2025-11-18 19:31:29.500 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6661 1 2025-11-18 19:32:29.862 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36010 10 6661 1 2025-11-18 19:33:30.225 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37510 10 6661 1 2025-11-18 19:34:27.587 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:34:27.682 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:34:27.606 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:34:27.590 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:34:27.673 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:34:30.625 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6661 1 2025-11-18 19:30:02.692 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:35:31.030 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49194 10 6661 1 2025-11-18 19:36:31.436 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44302 10 6661 1 2025-11-18 19:32:02.699 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:37:31.837 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51276 10 6661 1 2025-11-18 19:38:32.252 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59010 10 6661 1 2025-11-18 19:39:27.849 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:39:27.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:39:27.767 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:39:27.865 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:39:27.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:39:32.657 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35460 10 6661 1 2025-11-18 19:40:33.064 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6661 1 2025-11-18 19:41:33.470 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40024 10 6661 1 2025-11-18 19:37:02.697 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:42:33.872 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51736 10 6661 1 2025-11-18 19:43:34.237 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60010 10 6661 1 2025-11-18 19:39:02.695 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:44:27.919 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:44:27.853 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:44:27.562 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:44:27.719 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:44:27.802 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:44:34.639 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54014 10 6661 1 2025-11-18 19:45:35.075 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6661 1 2025-11-18 19:46:35.486 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6661 1 2025-11-18 19:47:35.889 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 14 10891 1 2025-11-18 19:48:36.376 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41428 10 6870 1 2025-11-18 19:44:02.701 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:49:27.988 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:49:27.722 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:49:27.899 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:49:27.758 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:49:27.906 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:49:36.783 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58496 10 6870 1 2025-11-18 19:50:37.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43978 10 6870 1 2025-11-18 19:46:02.699 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 19:51:37.587 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57000 10 6870 1 2025-11-18 19:52:37.967 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6870 1 2025-11-18 19:53:38.332 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46596 10 6870 1 2025-11-18 19:54:28.090 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 19:54:28.006 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 19:54:27.963 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:54:28.008 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 19:54:28.001 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 19:54:38.734 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6870 1 2025-11-18 19:55:39.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57364 10 6870 1 2025-11-18 19:51:02.703 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 19:56:39.524 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:59656 10 6870 1 2025-11-18 19:57:39.952 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 12 10793 1 2025-11-18 19:53:02.702 00:06:00.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 437195, total packets: 1035, avg bps: 910, avg pps: 0, avg bpp: 422 Time window: 2025-11-18 18:55:02 - 2025-11-18 19:59:02 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0042s User: 0.0010s Wall: 0.0018s flows/second: 74297.9 Runtime: 0.0019s