Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 12:58:50.361 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-11-18 12:59:19.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 12:59:19.654 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:59:19.697 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 12:59:19.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 12:59:19.780 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 12:59:50.716 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57300 10 6452 1 2025-11-18 13:00:51.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38024 10 6452 1 2025-11-18 12:56:02.568 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:01:51.532 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37910 10 6452 1 2025-11-18 13:02:51.931 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:37334 10 6452 1 2025-11-18 12:58:02.571 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:03:52.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37228 10 6452 1 2025-11-18 13:04:20.338 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:04:20.382 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:04:19.878 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:04:20.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:04:20.383 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:04:52.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44468 10 6452 1 2025-11-18 13:05:53.181 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-11-18 13:06:53.581 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-11-18 13:03:02.571 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:07:53.992 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 10 6452 1 2025-11-18 13:08:54.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-11-18 13:09:19.924 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:09:19.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:09:19.867 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:09:19.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:09:19.840 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:09:54.797 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-11-18 13:05:02.574 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:10:55.205 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-11-18 13:11:55.609 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-11-18 13:12:56.020 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59618 10 6452 1 2025-11-18 13:13:56.424 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 10 6452 1 2025-11-18 13:14:19.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:14:20.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:14:20.066 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:14:20.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:14:20.149 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:10:02.571 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:14:56.832 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-11-18 13:15:57.245 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51066 10 6452 1 2025-11-18 13:12:02.576 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:16:57.644 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 12 10369 1 2025-11-18 13:17:58.142 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-11-18 13:18:58.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54098 10 6452 1 2025-11-18 13:19:19.994 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:19:20.094 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:19:20.101 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:19:20.161 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:19:20.183 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:19:58.965 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52292 10 6452 1 2025-11-18 13:20:59.330 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-11-18 13:17:02.572 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:21:59.750 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-11-18 13:23:00.154 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46638 10 6452 1 2025-11-18 13:19:02.576 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:24:00.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-11-18 13:24:20.164 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:24:20.069 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:24:20.192 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:24:20.260 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:24:20.275 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:25:00.958 00:00:10.749 TCP 1.101.0.1:3000 -> 23.104.0.1:48736 10 6452 1 2025-11-18 13:26:01.746 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57224 10 6452 1 2025-11-18 13:27:02.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53218 10 6452 1 2025-11-18 13:28:02.548 00:00:11.222 TCP 1.101.0.1:3000 -> 23.104.0.1:47046 10 6452 1 2025-11-18 13:24:02.573 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:29:03.812 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44636 10 6452 1 2025-11-18 13:29:20.389 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:29:20.138 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:29:20.335 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:29:20.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:29:20.418 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:30:04.221 00:00:10.644 TCP 1.101.0.1:3000 -> 23.104.0.1:49172 10 6452 1 2025-11-18 13:26:02.578 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:31:04.909 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 12 6556 1 2025-11-18 13:32:05.315 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:42336 10 6452 1 2025-11-18 13:33:05.821 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46688 10 6452 1 2025-11-18 13:34:20.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:34:20.632 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:34:06.200 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36186 10 6452 1 2025-11-18 13:34:20.762 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:34:20.591 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:34:20.845 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:35:06.631 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47254 10 6452 1 2025-11-18 13:31:02.575 00:06:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:36:07.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-11-18 13:37:07.443 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-11-18 13:33:02.578 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:38:07.847 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 10 6452 1 2025-11-18 13:39:20.529 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:39:20.563 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:39:08.234 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57566 10 6452 1 2025-11-18 13:39:20.405 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:39:20.446 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:39:20.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:40:08.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 12 6556 1 2025-11-18 13:41:09.037 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38302 10 6452 1 2025-11-18 13:42:09.435 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:37958 12 10375 1 2025-11-18 13:38:02.577 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:43:09.874 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-11-18 13:44:20.641 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:44:20.364 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:44:20.640 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:44:20.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:44:10.282 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56522 10 6452 1 2025-11-18 13:44:20.722 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:40:02.579 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:45:10.644 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40106 10 6452 1 2025-11-18 13:46:11.059 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59710 10 6452 1 2025-11-18 13:47:11.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35146 10 6452 1 2025-11-18 13:48:11.877 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57428 10 6452 1 2025-11-18 13:49:20.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:49:20.652 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:49:20.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:49:20.798 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:49:20.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:49:12.296 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59426 10 6452 1 2025-11-18 13:45:02.580 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:50:12.702 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44356 10 6452 1 2025-11-18 13:51:13.111 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47696 10 6452 1 2025-11-18 13:47:02.585 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:52:13.522 00:00:10.841 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6452 1 2025-11-18 13:53:14.401 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-11-18 13:54:20.832 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:54:20.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:54:20.751 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:54:20.871 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:54:21.013 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:54:14.822 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-11-18 13:55:15.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6452 1 2025-11-18 13:56:15.631 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56794 10 6452 1 2025-11-18 13:52:02.583 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 13:57:15.993 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46014 10 6452 1 2025-11-18 13:58:16.364 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:60338 10 6452 1 Summary: total flows: 137, total bytes: 424925, total packets: 1026, avg bps: 907, avg pps: 0, avg bpp: 414 Time window: 2025-11-18 12:56:02 - 2025-11-18 13:58:26 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0049s User: 0.0010s Wall: 0.0014s flows/second: 96949.5 Runtime: 0.0014s