Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-18 15:59:23.386 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 15:59:22.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:59:14.370 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48202 10 6452 1 2025-11-18 15:59:23.427 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 15:59:23.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 15:59:23.510 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:00:14.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-11-18 16:01:15.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 12 6556 1 2025-11-18 16:02:15.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6452 1 2025-11-18 15:58:02.625 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:03:15.992 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35430 10 6452 1 2025-11-18 16:04:23.648 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:04:23.643 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:04:23.504 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:04:23.566 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:04:23.690 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:04:16.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49706 10 6452 1 2025-11-18 16:00:02.628 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:05:16.790 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53220 10 6452 1 2025-11-18 16:06:17.204 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52468 10 6452 1 2025-11-18 16:07:17.610 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53518 10 6452 1 2025-11-18 16:08:17.970 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60448 10 6452 1 2025-11-18 16:09:23.416 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:09:23.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:09:23.570 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:09:23.627 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:09:23.653 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:09:18.374 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34100 10 6452 1 2025-11-18 16:05:02.626 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:10:18.740 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-11-18 16:11:19.160 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52440 10 6452 1 2025-11-18 16:07:02.630 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:12:19.568 00:00:10.846 TCP 1.101.0.1:3000 -> 23.104.0.1:50666 12 10375 1 2025-11-18 16:13:20.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46470 10 6452 1 2025-11-18 16:14:24.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:14:23.641 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:14:24.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:14:24.056 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:14:24.139 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:14:20.861 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36244 10 6452 1 2025-11-18 16:15:21.293 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6452 1 2025-11-18 16:16:21.693 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45802 10 6452 1 2025-11-18 16:12:02.631 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:17:22.110 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47636 10 6452 1 2025-11-18 16:18:22.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-11-18 16:14:02.635 00:06:00.127 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:19:23.554 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:19:23.562 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:19:23.725 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:19:23.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:19:23.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:19:22.913 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39412 10 6452 1 2025-11-18 16:20:23.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54992 10 6452 1 2025-11-18 16:21:23.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38670 10 6452 1 2025-11-18 16:22:24.138 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-11-18 16:23:24.547 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57112 10 6452 1 2025-11-18 16:19:02.633 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:24:24.030 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:24:24.067 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:24:23.997 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:24:23.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:24:23.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:24:24.912 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48062 10 6452 1 2025-11-18 16:25:25.312 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58938 10 6452 1 2025-11-18 16:21:02.637 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:26:25.672 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53858 10 6452 1 2025-11-18 16:27:26.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6452 1 2025-11-18 16:28:26.438 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48116 10 6452 1 2025-11-18 16:29:23.933 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:29:23.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:29:23.822 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:29:23.849 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:29:23.855 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:29:26.839 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-11-18 16:30:27.264 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55136 10 6452 1 2025-11-18 16:26:02.635 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:31:27.623 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 10 6452 1 2025-11-18 16:32:27.987 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-18 16:28:02.638 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:33:28.346 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-11-18 16:34:24.232 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:34:23.905 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:34:23.802 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:34:24.150 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:34:24.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:34:28.750 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56352 10 6452 1 2025-11-18 16:35:29.113 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-11-18 16:36:29.511 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6452 1 2025-11-18 16:37:29.911 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43748 10 6452 1 2025-11-18 16:33:02.637 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:38:30.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43988 10 6452 1 2025-11-18 16:39:24.170 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:39:23.870 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:39:24.167 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:39:24.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:39:24.250 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:39:30.732 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-11-18 16:35:02.640 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:40:31.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-11-18 16:41:31.526 00:00:11.503 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6452 1 2025-11-18 16:42:33.109 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-11-18 16:43:33.536 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-11-18 16:44:24.137 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:44:24.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:44:24.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:44:24.054 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:44:24.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:44:33.934 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33146 10 6452 1 2025-11-18 16:40:02.639 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:45:34.348 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-11-18 16:46:34.752 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6452 1 2025-11-18 16:42:02.641 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:47:35.153 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-18 16:48:35.561 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43036 10 6452 1 2025-11-18 16:49:24.196 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:49:24.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:49:24.202 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:49:24.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:49:24.175 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:49:35.966 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-11-18 16:50:36.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53586 10 6452 1 2025-11-18 16:51:36.771 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60944 10 6452 1 2025-11-18 16:47:02.641 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-18 16:52:37.177 00:00:11.031 TCP 1.101.0.1:3000 -> 23.104.0.1:60264 10 6452 1 2025-11-18 16:53:38.245 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-11-18 16:49:02.644 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-18 16:54:24.422 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-18 16:54:24.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-18 16:54:24.074 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:54:24.340 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-18 16:54:24.440 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-18 16:54:38.646 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59760 10 6452 1 2025-11-18 16:55:39.049 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59958 10 6452 1 2025-11-18 16:56:39.452 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43294 10 6452 1 2025-11-18 16:57:39.858 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40684 10 6452 1 2025-11-18 16:58:40.277 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:32854 10 6452 1 Summary: total flows: 136, total bytes: 420043, total packets: 1008, avg bps: 921, avg pps: 0, avg bpp: 416 Time window: 2025-11-18 15:58:02 - 2025-11-18 16:58:50 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0046s User: 0.0015s Wall: 0.0024s flows/second: 57525.8 Runtime: 0.0024s