Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 13:58:52.058 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:58:52.261 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 13:58:52.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:58:51.975 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 13:58:51.988 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 13:59:31.763 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34282 10 6452 1 2025-11-17 14:00:32.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 10 6452 1 2025-11-17 14:01:32.551 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:49060 10 6452 1 2025-11-17 13:57:02.108 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:02:32.935 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49482 10 6452 1 2025-11-17 14:03:33.348 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52486 10 6452 1 2025-11-17 14:03:52.150 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:03:52.243 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:03:52.354 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:03:52.218 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:03:52.437 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 13:59:02.110 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:04:33.765 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:59778 10 6452 1 2025-11-17 14:05:34.136 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60442 10 6452 1 2025-11-17 14:06:34.545 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51170 10 6452 1 2025-11-17 14:07:34.950 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41954 10 6452 1 2025-11-17 14:08:35.322 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38100 10 6452 1 2025-11-17 14:08:52.440 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:08:52.267 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:08:51.897 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:08:52.358 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:08:52.322 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:04:02.108 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:09:35.701 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54282 10 6452 1 2025-11-17 14:10:36.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33808 10 6452 1 2025-11-17 14:06:02.112 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:11:36.529 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6452 1 2025-11-17 14:12:36.892 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 10 6452 1 2025-11-17 14:13:37.274 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:40920 11 6504 1 2025-11-17 14:13:52.426 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:13:52.157 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:13:52.542 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:13:52.436 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:13:52.625 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:14:37.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-11-17 14:15:38.132 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51410 10 6452 1 2025-11-17 14:11:02.109 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:16:38.529 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-11-17 14:17:38.887 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:53876 10 6452 1 2025-11-17 14:13:02.115 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:18:52.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:18:39.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54350 10 6452 1 2025-11-17 14:18:52.376 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:18:52.516 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:18:52.369 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:18:52.377 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:19:39.721 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-11-17 14:20:40.132 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36600 10 6452 1 2025-11-17 14:21:40.493 00:00:11.125 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 10 6452 1 2025-11-17 14:22:41.653 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-11-17 14:18:02.114 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:23:52.724 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:23:52.586 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:23:52.500 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:23:52.634 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:23:52.593 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:23:42.120 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55722 10 6452 1 2025-11-17 14:24:42.524 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:38438 10 6452 1 2025-11-17 14:20:02.117 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:25:42.982 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37866 10 6452 1 2025-11-17 14:26:43.399 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38806 10 6452 1 2025-11-17 14:27:43.803 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6452 1 2025-11-17 14:28:52.654 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:28:44.207 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46360 10 6452 1 2025-11-17 14:28:52.581 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:28:52.297 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:28:52.571 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:28:52.715 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:29:44.609 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45746 10 6452 1 2025-11-17 14:25:02.120 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:30:45.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58928 10 6452 1 2025-11-17 14:31:45.423 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37646 10 6452 1 2025-11-17 14:27:02.123 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:32:45.835 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:57346 10 6452 1 2025-11-17 14:33:52.830 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:33:52.670 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:33:52.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:33:52.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:33:52.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:33:46.224 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50278 10 6452 1 2025-11-17 14:34:46.626 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40908 10 6452 1 2025-11-17 14:35:47.040 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-11-17 14:36:47.446 00:00:10.697 TCP 1.101.0.1:3000 -> 23.104.0.1:43042 10 6452 1 2025-11-17 14:32:02.122 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:37:48.185 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58958 10 6452 1 2025-11-17 14:38:53.161 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:38:52.748 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:38:53.109 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:38:53.027 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:38:53.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:38:48.589 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-11-17 14:34:02.124 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:39:49.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-11-17 14:40:49.408 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-11-17 14:41:49.816 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58612 10 6452 1 2025-11-17 14:42:50.216 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39806 10 6452 1 2025-11-17 14:43:52.892 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:43:53.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:43:52.686 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:43:52.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:43:52.767 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:43:50.618 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35618 10 6452 1 2025-11-17 14:39:02.124 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:44:51.031 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55388 10 6452 1 2025-11-17 14:45:51.434 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36952 10 6452 1 2025-11-17 14:41:02.128 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:46:51.839 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55086 10 6452 1 2025-11-17 14:47:52.259 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6452 1 2025-11-17 14:48:53.314 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:48:53.209 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:48:53.167 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:48:53.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:48:53.341 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:48:52.634 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36572 10 6452 1 2025-11-17 14:49:53.037 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44872 10 6452 1 2025-11-17 14:46:02.127 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:50:53.457 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37850 10 6452 1 2025-11-17 14:51:53.860 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-11-17 14:52:54.236 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48386 10 6452 1 2025-11-17 14:48:02.130 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:53:53.385 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:53:53.120 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:53:52.885 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:53:53.303 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:53:53.264 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:53:54.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 10 6452 1 2025-11-17 14:54:55.001 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45830 10 6452 1 2025-11-17 14:55:55.397 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54824 10 6452 1 2025-11-17 14:56:55.762 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50818 10 6452 1 2025-11-17 14:53:02.129 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 14:57:56.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35896 10 6452 1 Summary: total flows: 136, total bytes: 410477, total packets: 1009, avg bps: 882, avg pps: 0, avg bpp: 406 Time window: 2025-11-17 13:57:02 - 2025-11-17 14:59:02 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0027s User: 0.0027s Wall: 0.0016s flows/second: 87408.1 Runtime: 0.0016s