Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 04:59:09.793 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 04:59:09.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 04:59:10.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 04:59:10.134 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 04:59:10.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 04:59:11.156 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 10 6661 1 2025-11-18 04:55:02.410 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:00:11.561 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35796 10 6661 1 2025-11-18 05:01:11.961 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6661 1 2025-11-18 05:02:12.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40330 10 6661 1 2025-11-18 05:03:12.784 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48006 10 6661 1 2025-11-18 05:04:10.162 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:04:10.296 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:04:10.363 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:04:10.165 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:04:10.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:04:13.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40300 10 6661 1 2025-11-18 05:00:02.410 00:06:00.122 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:05:13.600 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50342 10 6661 1 2025-11-18 05:06:14.005 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51214 10 6661 1 2025-11-18 05:02:02.411 00:06:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:07:14.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42554 11 6701 1 2025-11-18 05:08:14.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47072 10 6661 1 2025-11-18 05:09:10.331 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:09:09.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:09:10.159 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:09:09.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:09:10.414 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:09:15.175 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50642 10 6661 1 2025-11-18 05:10:15.579 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54856 10 6661 1 2025-11-18 05:11:15.980 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50752 10 6661 1 2025-11-18 05:07:02.412 00:06:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:12:16.384 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43718 10 6661 1 2025-11-18 05:13:16.748 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42498 10 6661 1 2025-11-18 05:14:10.330 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:09:02.417 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:14:10.230 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:14:10.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:14:10.249 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:14:10.230 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:14:17.114 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:38120 10 6661 1 2025-11-18 05:15:17.466 00:00:10.627 TCP 1.101.0.1:3000 -> 23.104.0.1:59290 10 6661 1 2025-11-18 05:16:18.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41130 10 6661 1 2025-11-18 05:17:18.529 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41652 10 6661 1 2025-11-18 05:18:18.939 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6661 1 2025-11-18 05:14:02.415 00:06:00.120 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:19:10.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:19:10.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:19:10.393 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:19:10.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:19:10.548 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:19:19.346 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6661 1 2025-11-18 05:20:19.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36596 10 6661 1 2025-11-18 05:16:02.423 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:21:20.155 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57580 10 6661 1 2025-11-18 05:22:20.562 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40554 10 6661 1 2025-11-18 05:23:20.972 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53744 10 6661 1 2025-11-18 05:24:11.756 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:24:11.858 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:24:11.822 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:24:11.952 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:24:11.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:24:21.379 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 10 6661 1 2025-11-18 05:25:21.741 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51666 10 6661 1 2025-11-18 05:21:02.423 00:06:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:26:22.148 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54636 10 6661 1 2025-11-18 05:27:22.551 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:33076 12 10369 1 2025-11-18 05:23:02.425 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:28:23.026 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58658 10 6452 1 2025-11-18 05:29:10.744 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:29:10.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:29:10.530 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:29:10.583 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:29:10.635 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:29:23.381 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38134 10 6452 1 2025-11-18 05:30:23.743 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32930 10 6452 1 2025-11-18 05:31:24.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53358 10 6452 1 2025-11-18 05:32:24.519 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47102 10 6452 1 2025-11-18 05:28:02.423 00:06:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:33:24.885 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47750 10 6452 1 2025-11-18 05:34:10.615 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:34:10.565 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:34:10.612 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:34:10.719 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:34:10.694 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:34:25.307 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-11-18 05:30:02.426 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:35:25.708 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60692 10 6452 1 2025-11-18 05:36:26.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-11-18 05:37:26.516 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 10 6452 1 2025-11-18 05:38:26.883 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 12 6556 1 2025-11-18 05:39:11.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:39:11.078 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:39:11.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:39:11.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:39:11.405 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:39:27.298 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49804 10 6452 1 2025-11-18 05:35:02.425 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:40:27.661 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42268 10 6452 1 2025-11-18 05:41:28.024 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35950 10 6452 1 2025-11-18 05:37:02.427 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:42:28.389 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41726 10 6452 1 2025-11-18 05:43:28.791 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49530 10 6452 1 2025-11-18 05:44:10.790 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:44:10.714 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:44:10.829 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:44:10.708 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:44:10.819 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:44:29.195 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37580 10 6452 1 2025-11-18 05:45:29.602 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47840 10 6452 1 2025-11-18 05:46:30.008 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-11-18 05:42:02.425 00:06:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:47:30.379 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-11-18 05:48:30.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37372 10 6452 1 2025-11-18 05:44:02.429 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:49:10.936 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:49:10.769 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:49:10.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:49:11.037 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:49:11.055 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:49:31.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38826 10 6452 1 2025-11-18 05:50:31.588 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52068 10 6452 1 2025-11-18 05:51:31.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52338 10 6452 1 2025-11-18 05:52:32.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39120 10 6452 1 2025-11-18 05:53:32.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59738 10 6452 1 2025-11-18 05:49:02.427 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 05:54:11.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 05:54:11.248 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:54:11.279 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 05:54:11.230 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 05:54:11.362 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 05:54:33.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-11-18 05:55:33.584 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54800 10 6452 1 2025-11-18 05:51:02.431 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 05:56:33.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 10 6452 1 2025-11-18 05:57:34.403 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41378 10 6452 1 2025-11-18 05:58:34.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53388 10 6452 1 Summary: total flows: 137, total bytes: 426790, total packets: 1023, avg bps: 893, avg pps: 0, avg bpp: 417 Time window: 2025-11-18 04:55:02 - 2025-11-18 05:58:45 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0025s Wall: 0.0024s flows/second: 56098.8 Runtime: 0.0025s