Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 14:58:43.355 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47520 10 6452 1 2025-11-18 14:59:22.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 14:59:21.818 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:59:21.978 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 14:59:21.969 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 14:59:22.058 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 14:59:43.762 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36812 10 6452 1 2025-11-18 14:55:02.607 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:00:44.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6452 1 2025-11-18 15:01:44.553 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57058 10 6452 1 2025-11-18 14:57:02.609 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:02:45.009 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48154 10 6452 1 2025-11-18 15:03:45.369 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-11-18 15:04:22.335 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:04:21.943 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:04:22.376 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:04:21.888 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:04:22.458 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:04:45.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 10 6452 1 2025-11-18 15:05:46.187 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46994 10 6452 1 2025-11-18 15:06:46.556 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-11-18 15:02:02.606 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:07:46.961 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-11-18 15:08:47.323 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49510 10 6452 1 2025-11-18 15:04:02.609 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:09:22.386 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:09:22.370 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:09:22.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:09:22.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:09:22.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:09:47.728 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47970 10 6452 1 2025-11-18 15:10:48.134 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44454 10 6452 1 2025-11-18 15:11:48.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44968 10 6452 1 2025-11-18 15:12:48.941 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35588 10 6452 1 2025-11-18 15:09:02.608 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:13:49.357 00:00:16.293 TCP 1.101.0.1:3000 -> 23.104.0.1:42114 10 6452 1 2025-11-18 15:14:22.436 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:14:22.515 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:14:22.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:14:22.430 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:14:22.511 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:14:55.728 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-11-18 15:11:02.611 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:15:56.130 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45818 10 6452 1 2025-11-18 15:16:56.538 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-11-18 15:17:56.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33086 10 6452 1 2025-11-18 15:18:57.354 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47288 10 6452 1 2025-11-18 15:19:22.689 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:19:22.560 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:19:22.510 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:19:22.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:19:22.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:19:57.762 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48756 10 6452 1 2025-11-18 15:16:02.613 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:20:58.131 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38816 10 6452 1 2025-11-18 15:21:58.531 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51400 10 6452 1 2025-11-18 15:18:02.617 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:22:58.887 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 10 6452 1 2025-11-18 15:23:59.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35810 10 6452 1 2025-11-18 15:24:22.755 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:24:22.855 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:24:22.705 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:24:22.672 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:24:22.901 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:24:59.725 00:00:10.678 TCP 1.101.0.1:3000 -> 23.104.0.1:59812 10 6452 1 2025-11-18 15:26:00.446 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33886 10 6452 1 2025-11-18 15:27:00.844 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52156 10 6452 1 2025-11-18 15:23:02.615 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:28:01.269 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-11-18 15:29:01.677 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-11-18 15:29:22.642 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:29:22.660 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:29:22.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:29:22.559 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:29:22.661 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:25:02.618 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:30:02.123 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49624 10 6452 1 2025-11-18 15:31:02.485 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-11-18 15:32:02.884 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60950 12 6556 1 2025-11-18 15:33:03.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33282 10 6452 1 2025-11-18 15:34:03.711 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44654 10 6452 1 2025-11-18 15:34:22.938 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:34:22.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:34:22.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:34:22.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:34:22.782 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:30:02.617 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:35:04.120 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42626 10 6452 1 2025-11-18 15:36:04.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-11-18 15:32:02.620 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:37:04.929 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:32934 10 6452 1 2025-11-18 15:38:05.352 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38744 10 6452 1 2025-11-18 15:39:05.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45320 10 6452 1 2025-11-18 15:39:23.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:39:23.003 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:39:23.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:39:22.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:39:23.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:40:06.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6452 1 2025-11-18 15:41:06.561 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 10 6452 1 2025-11-18 15:37:02.617 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:42:06.972 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54578 10 6452 1 2025-11-18 15:43:07.382 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6452 1 2025-11-18 15:39:02.619 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:44:07.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38400 10 6452 1 2025-11-18 15:44:23.063 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:44:22.884 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:44:22.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:44:22.980 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:44:22.972 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:45:08.180 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-11-18 15:46:08.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-18 15:47:08.989 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:36926 11 6504 1 2025-11-18 15:48:09.449 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-11-18 15:44:02.621 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:49:09.852 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-11-18 15:49:23.286 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:49:23.127 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:49:22.878 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:49:23.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:49:23.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:50:10.285 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-11-18 15:46:02.625 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:51:10.648 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-11-18 15:52:11.069 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39210 10 6452 1 2025-11-18 15:53:11.440 00:00:10.864 TCP 1.101.0.1:3000 -> 23.104.0.1:41356 10 6452 1 2025-11-18 15:54:12.341 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-11-18 15:54:23.633 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:54:23.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:54:23.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:54:23.208 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:54:23.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 15:55:12.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-11-18 15:51:02.624 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 15:56:13.148 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 12 6556 1 2025-11-18 15:57:13.563 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40104 10 6452 1 2025-11-18 15:53:02.626 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 15:58:13.972 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:50192 10 6452 1 Summary: total flows: 138, total bytes: 417998, total packets: 1037, avg bps: 870, avg pps: 0, avg bpp: 403 Time window: 2025-11-18 14:55:02 - 2025-11-18 15:59:02 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0038s User: 0.0019s Wall: 0.0020s flows/second: 70015.0 Runtime: 0.0020s