Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-16 12:58:59.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 12:58:48.760 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38526 10 6452 1 2025-09-16 12:59:00.086 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 12:59:00.304 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 12:59:00.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 12:59:00.162 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 12:59:49.173 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41028 10 6452 1 2025-09-16 13:00:49.576 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36684 10 6452 1 2025-09-16 12:56:30.473 00:06:00.009 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:01:49.938 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:35408 10 6452 1 2025-09-16 13:02:50.324 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6452 1 2025-09-16 13:04:00.167 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:03:59.989 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:03:50.684 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40046 10 6452 1 2025-09-16 13:04:00.097 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:04:00.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:04:00.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:04:51.053 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58612 10 6452 1 2025-09-16 13:00:30.467 00:06:00.016 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:05:51.467 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50078 10 6452 1 2025-09-16 13:06:51.885 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51936 10 6452 1 2025-09-16 13:07:52.288 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35158 10 6452 1 2025-09-16 13:03:30.480 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:09:00.267 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:09:00.166 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:09:00.282 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:08:52.687 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-09-16 13:09:00.375 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:09:00.462 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:09:53.112 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-09-16 13:10:53.528 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44876 10 6452 1 2025-09-16 13:11:53.930 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:45814 10 6452 1 2025-09-16 13:07:30.470 00:06:00.014 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:12:54.313 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 10 6452 1 2025-09-16 13:14:00.497 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:14:00.539 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:14:00.287 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:14:00.509 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:14:00.592 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:13:54.724 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38062 10 6452 1 2025-09-16 13:14:55.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39244 10 6452 1 2025-09-16 13:10:30.482 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:15:55.538 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6452 1 2025-09-16 13:16:55.899 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-09-16 13:17:56.305 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57182 10 6452 1 2025-09-16 13:19:00.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:19:00.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:19:00.491 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:19:00.347 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:19:00.636 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:18:56.704 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36104 10 6452 1 2025-09-16 13:14:30.474 00:06:00.014 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:19:57.113 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:37148 13 13939 1 2025-09-16 13:20:57.601 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-09-16 13:21:57.968 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:56720 10 6452 1 2025-09-16 13:17:30.484 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:22:58.395 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58692 10 6452 1 2025-09-16 13:24:01.005 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:24:01.108 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:24:00.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:24:01.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:24:01.193 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:23:58.825 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-09-16 13:24:59.193 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-09-16 13:25:59.610 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39258 10 6452 1 2025-09-16 13:21:30.475 00:06:00.016 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:27:00.024 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-09-16 13:28:00.426 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60546 10 6452 1 2025-09-16 13:29:00.940 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:29:00.699 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:29:00.751 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:29:00.398 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:29:00.858 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:29:00.836 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43788 10 6452 1 2025-09-16 13:24:30.486 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:30:01.212 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51754 10 6452 1 2025-09-16 13:31:01.569 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44816 10 6452 1 2025-09-16 13:32:01.937 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43464 10 6452 1 2025-09-16 13:33:02.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-09-16 13:28:30.480 00:06:00.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:34:00.850 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:34:00.846 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:34:00.670 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:34:00.656 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:34:00.739 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:34:02.767 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51380 10 6452 1 2025-09-16 13:35:03.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-09-16 13:36:03.593 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37680 10 6452 1 2025-09-16 13:31:30.490 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:37:03.968 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50652 10 6452 1 2025-09-16 13:38:04.382 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43030 10 6452 1 2025-09-16 13:39:00.951 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:39:00.763 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:39:01.143 00:00:00.017 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:39:00.808 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:39:01.035 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:39:04.804 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-09-16 13:40:05.206 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47852 10 6452 1 2025-09-16 13:35:30.482 00:06:00.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:41:05.617 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46638 10 6452 1 2025-09-16 13:42:05.983 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51986 10 6452 1 2025-09-16 13:43:06.342 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47284 10 6452 1 2025-09-16 13:38:30.491 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:44:01.256 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:44:00.988 00:00:00.067 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:44:01.119 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:44:01.003 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:44:01.085 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:44:06.744 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52012 10 6452 1 2025-09-16 13:45:07.149 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48648 10 6452 1 2025-09-16 13:46:07.551 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-09-16 13:47:07.917 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49520 10 6452 1 2025-09-16 13:42:30.481 00:06:00.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:48:08.322 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-09-16 13:49:01.227 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:49:01.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:49:00.876 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:49:01.284 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:49:01.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:49:08.692 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60310 10 6452 1 2025-09-16 13:50:09.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59496 10 6452 1 2025-09-16 13:45:30.491 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:51:09.512 00:00:11.082 TCP 1.101.0.1:3000 -> 23.104.0.1:40996 10 6452 1 2025-09-16 13:52:10.636 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40714 10 6452 1 2025-09-16 13:53:11.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51370 10 6452 1 2025-09-16 13:54:01.268 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 13:54:01.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 13:54:01.064 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:54:01.185 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 13:54:01.236 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 13:54:11.438 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38460 10 6452 1 2025-09-16 13:49:30.482 00:06:00.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 13:55:11.844 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 2025-09-16 13:56:12.265 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-09-16 13:57:12.677 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-09-16 13:52:30.493 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 13:58:13.107 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 10 6452 1 Summary: total flows: 137, total bytes: 421088, total packets: 958, avg bps: 905, avg pps: 0, avg bpp: 439 Time window: 2025-09-16 12:56:30 - 2025-09-16 13:58:30 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0008s Wall: 0.0019s flows/second: 73820.6 Runtime: 0.0019s