Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-17 14:58:53.673 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 14:58:53.517 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 14:58:53.158 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:58:53.591 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 14:58:53.424 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 14:58:56.598 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55330 10 6452 1 2025-11-17 14:55:02.137 00:06:00.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 14:59:57.008 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-11-17 15:00:57.413 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36166 10 6452 1 2025-11-17 15:01:57.832 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:59332 10 6452 1 2025-11-17 15:02:58.219 00:00:10.638 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-11-17 15:03:53.316 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:03:53.409 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:03:53.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:03:53.396 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:03:53.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:03:58.906 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:57192 10 6452 1 2025-11-17 15:00:02.135 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:04:59.275 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43054 10 6452 1 2025-11-17 15:05:59.681 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51242 10 6452 1 2025-11-17 15:02:02.138 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:07:00.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47152 10 6452 1 2025-11-17 15:08:00.507 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-11-17 15:08:53.323 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:08:53.340 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:08:53.490 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:08:53.402 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:08:53.574 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:09:00.909 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-11-17 15:10:01.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 10 6452 1 2025-11-17 15:11:01.722 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47340 10 6452 1 2025-11-17 15:07:02.136 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:12:02.135 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-11-17 15:13:02.544 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37760 10 6452 1 2025-11-17 15:13:53.636 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:13:53.719 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:13:53.581 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:13:53.552 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:13:53.634 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:09:02.138 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:14:02.905 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37976 10 6452 1 2025-11-17 15:15:03.277 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41530 12 6556 1 2025-11-17 15:16:03.693 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32880 10 6452 1 2025-11-17 15:17:04.114 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59128 10 6452 1 2025-11-17 15:18:04.470 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-17 15:18:54.013 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:18:53.795 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:18:53.817 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:18:53.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:18:53.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:14:02.137 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:19:04.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 2025-11-17 15:20:05.228 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-11-17 15:16:02.139 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:21:05.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47642 10 6452 1 2025-11-17 15:22:06.000 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44334 10 6452 1 2025-11-17 15:23:06.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47038 10 6452 1 2025-11-17 15:23:53.574 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:23:53.712 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:23:53.910 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:23:53.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:23:53.992 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:24:06.808 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43380 10 6452 1 2025-11-17 15:25:07.217 00:00:16.669 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-11-17 15:21:02.138 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:26:13.925 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51234 10 6452 1 2025-11-17 15:27:14.341 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59234 10 6452 1 2025-11-17 15:23:02.142 00:06:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:28:14.738 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38916 10 6452 1 2025-11-17 15:28:54.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:28:53.948 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:28:53.689 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:28:53.948 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:28:53.951 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:29:15.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35680 10 6452 1 2025-11-17 15:30:15.546 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 10 6452 1 2025-11-17 15:31:15.903 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54196 10 6452 1 2025-11-17 15:32:16.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52090 10 6452 1 2025-11-17 15:28:02.141 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:33:16.687 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 10 6452 1 2025-11-17 15:33:54.048 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:33:53.842 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:33:53.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:33:53.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:33:53.955 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:34:17.064 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48720 10 6452 1 2025-11-17 15:30:02.144 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:35:17.470 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50636 10 6452 1 2025-11-17 15:36:17.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42250 10 6452 1 2025-11-17 15:37:18.319 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-11-17 15:38:18.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46998 10 6452 1 2025-11-17 15:38:54.150 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:38:53.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:38:54.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:38:54.068 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:38:53.944 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:39:19.150 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39794 10 6452 1 2025-11-17 15:35:02.148 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:40:19.519 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-11-17 15:41:19.879 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37046 10 6452 1 2025-11-17 15:37:02.151 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:42:20.245 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37612 10 6452 1 2025-11-17 15:43:20.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-11-17 15:43:54.231 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:43:54.140 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:43:54.122 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:43:54.118 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:43:54.206 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:44:21.004 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60624 10 6452 1 2025-11-17 15:45:21.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43518 10 6452 1 2025-11-17 15:46:21.816 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-11-17 15:42:02.150 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:47:22.221 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48454 10 6452 1 2025-11-17 15:48:22.623 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54046 10 6452 1 2025-11-17 15:48:54.282 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:48:54.248 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:48:54.278 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:48:54.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:48:54.362 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:44:02.151 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:49:23.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51168 10 6452 1 2025-11-17 15:50:23.442 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47212 10 6452 1 2025-11-17 15:51:23.847 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:46856 10 6452 1 2025-11-17 15:52:24.277 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-11-17 15:53:24.687 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-11-17 15:53:54.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-17 15:53:54.404 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-17 15:53:54.359 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:53:54.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-17 15:53:54.401 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-17 15:49:02.149 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-17 15:54:25.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-11-17 15:55:25.521 00:00:11.949 TCP 1.101.0.1:3000 -> 23.104.0.1:36972 10 6452 1 2025-11-17 15:51:02.153 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-17 15:56:27.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 12 6556 1 2025-11-17 15:57:27.916 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34346 10 6452 1 2025-11-17 15:58:28.323 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52964 10 6452 1 Summary: total flows: 137, total bytes: 417085, total packets: 1022, avg bps: 874, avg pps: 0, avg bpp: 408 Time window: 2025-11-17 14:55:02 - 2025-11-17 15:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0035s User: 0.0027s Wall: 0.0024s flows/second: 56011.3 Runtime: 0.0025s