Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 11:59:18.657 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 11:59:18.482 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 11:59:18.454 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 11:59:18.573 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 11:59:18.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 11:59:24.719 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33910 10 6452 1 2025-11-18 11:55:02.558 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:00:25.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6452 1 2025-11-18 12:01:25.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 10 6452 1 2025-11-18 12:02:25.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50336 10 6452 1 2025-11-18 12:03:26.319 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36258 10 6452 1 2025-11-18 12:04:19.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:04:19.139 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:04:18.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:04:19.134 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:04:18.377 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:04:26.681 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56222 10 6452 1 2025-11-18 12:00:02.556 00:06:00.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:05:27.062 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34790 10 6452 1 2025-11-18 12:06:27.468 00:00:11.134 TCP 1.101.0.1:3000 -> 23.104.0.1:46530 10 6452 1 2025-11-18 12:02:02.559 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:07:28.645 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 12 6556 1 2025-11-18 12:08:29.055 00:00:10.840 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-11-18 12:09:18.890 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:09:18.716 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:09:18.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:09:18.808 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:09:18.647 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:09:29.935 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:43732 10 6452 1 2025-11-18 12:10:30.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53728 10 6452 1 2025-11-18 12:11:30.726 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-18 12:07:02.559 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:12:31.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40520 10 6452 1 2025-11-18 12:13:31.523 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41676 10 6452 1 2025-11-18 12:09:02.562 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:14:18.610 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:14:18.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:14:18.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:14:18.481 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:14:18.571 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:14:31.924 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40088 10 6452 1 2025-11-18 12:15:32.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34282 10 6452 1 2025-11-18 12:16:32.764 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-18 12:17:33.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 10 6452 1 2025-11-18 12:18:33.579 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60416 10 6452 1 2025-11-18 12:14:02.562 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:19:18.819 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:19:18.605 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:19:18.878 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:19:18.828 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:19:18.960 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:19:33.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6452 1 2025-11-18 12:20:34.358 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:56502 10 6452 1 2025-11-18 12:16:02.565 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:21:34.762 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:43360 10 6452 1 2025-11-18 12:22:35.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54372 10 6452 1 2025-11-18 12:23:35.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-11-18 12:24:19.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:24:19.274 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:24:19.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:24:19.430 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:24:19.273 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:24:36.002 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41914 10 6452 1 2025-11-18 12:25:36.403 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42642 10 6452 1 2025-11-18 12:21:02.562 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:26:36.759 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52152 10 6452 1 2025-11-18 12:27:37.177 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-11-18 12:23:02.565 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:28:37.579 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50868 10 6452 1 2025-11-18 12:29:19.161 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:29:19.132 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:29:19.089 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:29:19.067 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:29:19.173 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:29:37.978 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 10 6452 1 2025-11-18 12:30:38.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58248 10 6452 1 2025-11-18 12:31:38.797 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38006 10 6452 1 2025-11-18 12:32:39.199 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37354 10 6452 1 2025-11-18 12:28:02.564 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:33:39.596 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-11-18 12:34:19.212 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:34:19.284 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:34:19.150 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:34:19.128 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:34:19.115 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:34:40.000 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-11-18 12:30:02.566 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:35:40.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40042 10 6452 1 2025-11-18 12:36:40.770 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40558 10 6452 1 2025-11-18 12:37:41.192 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-11-18 12:38:41.599 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-11-18 12:39:19.545 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:39:19.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:39:19.406 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:39:19.461 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:39:19.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:39:42.007 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6452 1 2025-11-18 12:35:02.564 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:40:42.405 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41526 10 6452 1 2025-11-18 12:41:42.803 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:50242 10 6452 1 2025-11-18 12:37:02.568 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:42:43.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60468 10 6452 1 2025-11-18 12:43:43.576 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33376 10 6452 1 2025-11-18 12:44:19.301 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:44:19.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:44:19.408 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:44:19.382 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:44:19.384 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:44:43.942 00:00:10.490 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-11-18 12:45:44.473 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-11-18 12:46:44.905 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46000 11 6504 1 2025-11-18 12:42:02.567 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:47:45.325 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39448 10 6452 1 2025-11-18 12:48:45.729 00:00:10.687 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 10 6452 1 2025-11-18 12:44:02.568 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:49:19.797 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:49:19.625 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:49:19.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:49:19.713 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:49:19.497 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:49:46.456 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6452 1 2025-11-18 12:50:46.820 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:55042 10 6452 1 2025-11-18 12:51:47.272 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-11-18 12:52:47.680 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49234 10 6452 1 2025-11-18 12:53:48.100 00:00:10.509 TCP 1.101.0.1:3000 -> 23.104.0.1:50350 10 6452 1 2025-11-18 12:49:02.567 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 12:54:19.548 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:54:19.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:54:19.472 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:54:19.466 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:54:19.812 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:54:48.651 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53438 10 6452 1 2025-11-18 12:55:49.054 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-11-18 12:51:02.569 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 12:56:49.454 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 12 10375 1 2025-11-18 12:57:49.943 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 Summary: total flows: 136, total bytes: 414504, total packets: 1013, avg bps: 877, avg pps: 0, avg bpp: 409 Time window: 2025-11-18 11:55:02 - 2025-11-18 12:58:00 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0051s User: 0.0010s Wall: 0.0017s flows/second: 79017.2 Runtime: 0.0017s