Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 13:54:02.586 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 13:59:20.894 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 13:59:20.874 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:59:20.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 13:59:20.765 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 13:59:21.052 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 13:59:16.719 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46838 10 6452 1 2025-11-18 14:00:17.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 10 6452 1 2025-11-18 14:01:17.522 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58932 10 6452 1 2025-11-18 14:02:17.930 00:00:10.976 TCP 1.101.0.1:3000 -> 23.104.0.1:35754 10 6452 1 2025-11-18 14:03:18.946 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:58610 10 6452 1 2025-11-18 13:59:02.584 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:04:20.856 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:04:20.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:04:21.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:04:20.979 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:04:21.095 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:04:19.843 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:59632 10 6452 1 2025-11-18 14:05:20.268 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38244 10 6452 1 2025-11-18 14:01:02.587 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:06:20.668 00:00:11.141 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 10 6452 1 2025-11-18 14:07:21.852 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:39404 10 6452 1 2025-11-18 14:08:22.230 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56982 10 6452 1 2025-11-18 14:09:21.233 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:09:21.135 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:09:21.010 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:09:21.123 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:09:21.093 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:09:22.632 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-11-18 14:10:23.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60420 10 6452 1 2025-11-18 14:06:02.587 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:11:23.440 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-11-18 14:12:23.844 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:56938 14 10473 1 2025-11-18 14:08:02.590 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:13:24.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34670 10 6452 1 2025-11-18 14:14:21.368 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:14:21.230 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:14:21.201 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:14:21.283 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:14:21.276 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:14:24.803 00:00:11.544 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-11-18 14:15:26.385 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58772 10 6452 1 2025-11-18 14:16:26.753 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38202 10 6452 1 2025-11-18 14:17:27.150 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6452 1 2025-11-18 14:13:02.590 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:18:27.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44622 10 6452 1 2025-11-18 14:19:21.272 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:19:21.217 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:19:21.522 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:19:21.268 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:19:21.604 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:19:27.950 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-11-18 14:15:02.596 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:20:28.375 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58046 10 6452 1 2025-11-18 14:21:28.741 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45830 10 6452 1 2025-11-18 14:22:29.145 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-11-18 14:23:29.550 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6452 1 2025-11-18 14:24:21.525 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:24:21.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:24:21.296 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:24:21.442 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:24:21.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:24:29.965 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46446 10 6452 1 2025-11-18 14:20:02.593 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:25:30.370 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 10 6452 1 2025-11-18 14:26:30.733 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41160 10 6452 1 2025-11-18 14:22:02.597 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:27:31.144 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 2025-11-18 14:28:31.554 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33344 10 6452 1 2025-11-18 14:29:21.706 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:29:21.895 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:29:22.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:29:21.625 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:29:22.106 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:29:31.914 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43876 10 6452 1 2025-11-18 14:30:32.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57908 10 6452 1 2025-11-18 14:31:32.723 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47638 10 6452 1 2025-11-18 14:27:02.597 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:32:33.103 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52868 10 6452 1 2025-11-18 14:33:33.466 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46160 10 6452 1 2025-11-18 14:29:02.599 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:34:21.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:34:21.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:34:21.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:34:21.490 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:34:21.581 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:34:33.869 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-11-18 14:35:34.275 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33198 10 6452 1 2025-11-18 14:36:34.638 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49760 10 6452 1 2025-11-18 14:37:35.058 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 10 6452 1 2025-11-18 14:38:35.449 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35498 10 6452 1 2025-11-18 14:34:02.597 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:39:21.768 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:39:21.425 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:39:21.766 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:39:21.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:39:21.849 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:39:35.810 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-11-18 14:40:36.217 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-11-18 14:36:02.600 00:06:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:41:36.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38168 10 6452 1 2025-11-18 14:42:37.000 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-11-18 14:43:37.369 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 10 6452 1 2025-11-18 14:44:21.881 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:44:21.667 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:44:21.766 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:44:21.826 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:44:21.849 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:44:37.788 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45492 10 6452 1 2025-11-18 14:45:38.148 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-11-18 14:41:02.599 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:46:38.559 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-11-18 14:47:38.962 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59910 10 6452 1 2025-11-18 14:43:02.603 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:48:39.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44032 10 6452 1 2025-11-18 14:49:21.896 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:49:21.792 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:49:21.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:49:21.753 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:49:22.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:49:39.769 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-11-18 14:50:40.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48798 10 6452 1 2025-11-18 14:51:40.544 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56070 10 6452 1 2025-11-18 14:52:40.902 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 12 6556 1 2025-11-18 14:48:02.606 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 14:53:41.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-11-18 14:54:22.088 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:54:22.098 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:54:22.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:54:22.214 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:54:22.304 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:54:41.720 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-11-18 14:50:02.607 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 14:55:42.133 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50870 10 6452 1 2025-11-18 14:56:42.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51384 10 6452 1 2025-11-18 14:57:42.945 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6452 1 Summary: total flows: 136, total bytes: 414550, total packets: 1014, avg bps: 865, avg pps: 0, avg bpp: 408 Time window: 2025-11-18 13:54:02 - 2025-11-18 14:57:53 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0017s User: 0.0033s Wall: 0.0023s flows/second: 58770.4 Runtime: 0.0023s