Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-16 19:59:08.340 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 19:59:08.259 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 19:59:08.446 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 19:59:08.335 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 19:59:08.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 19:59:09.425 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34050 10 6452 1 2025-09-16 20:00:09.789 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41642 10 6452 1 2025-09-16 20:01:10.194 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-09-16 19:56:30.620 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:02:10.595 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33566 10 6452 1 2025-09-16 20:03:11.002 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:59290 10 6452 1 2025-09-16 20:04:08.611 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:04:08.529 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:04:08.234 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:04:08.568 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:04:08.316 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:04:11.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6452 1 2025-09-16 20:05:11.761 00:00:17.082 TCP 1.101.0.1:3000 -> 23.104.0.1:50108 10 6452 1 2025-09-16 20:00:30.624 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-09-16 20:06:18.876 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37754 10 6452 1 2025-09-16 20:07:19.238 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34318 10 6452 1 2025-09-16 20:08:19.638 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45828 10 6452 1 2025-09-16 20:03:30.624 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:09:08.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:09:08.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:09:08.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:09:08.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:09:08.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:09:20.033 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-09-16 20:10:20.449 00:00:10.905 TCP 1.101.0.1:3000 -> 23.104.0.1:38538 10 6452 1 2025-09-16 20:11:21.398 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-09-16 20:07:30.626 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:12:21.800 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34974 10 6452 1 2025-09-16 20:13:22.204 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51990 10 6452 1 2025-09-16 20:14:08.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:14:08.677 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:14:08.757 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:14:08.609 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:14:08.582 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:14:22.608 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-09-16 20:10:30.624 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:15:23.013 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36564 10 6452 1 2025-09-16 20:16:23.373 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35908 10 6452 1 2025-09-16 20:17:23.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48372 10 6452 1 2025-09-16 20:18:24.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33200 10 6452 1 2025-09-16 20:19:08.841 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:19:08.794 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:19:08.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:19:08.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:19:08.986 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:19:24.582 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51864 10 6452 1 2025-09-16 20:14:30.626 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:20:24.948 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34162 10 6452 1 2025-09-16 20:21:25.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39278 10 6452 1 2025-09-16 20:17:30.625 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:22:25.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44246 10 6452 1 2025-09-16 20:23:26.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-09-16 20:24:09.384 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:24:09.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:24:08.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:24:09.508 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:24:09.592 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:24:26.580 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 10 6452 1 2025-09-16 20:25:26.982 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:37838 10 6452 1 2025-09-16 20:21:30.629 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:26:27.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50874 10 6452 1 2025-09-16 20:27:27.755 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52128 10 6452 1 2025-09-16 20:28:28.118 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:38224 11 6504 1 2025-09-16 20:29:09.044 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:29:09.133 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:29:09.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:29:09.003 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:29:08.959 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:24:30.626 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:29:28.572 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-09-16 20:30:28.979 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6452 1 2025-09-16 20:31:29.351 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59398 10 6452 1 2025-09-16 20:32:29.754 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:38362 10 6452 1 2025-09-16 20:28:30.630 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:33:30.184 00:00:10.952 TCP 1.101.0.1:3000 -> 23.104.0.1:60408 10 6452 1 2025-09-16 20:34:09.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:34:09.171 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:34:09.070 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:34:09.067 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:34:09.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:34:31.169 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33136 10 6452 1 2025-09-16 20:35:31.548 00:00:10.669 TCP 1.101.0.1:3000 -> 23.104.0.1:35916 10 6452 1 2025-09-16 20:31:30.628 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:36:32.253 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56220 10 6452 1 2025-09-16 20:37:32.661 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48804 10 6452 1 2025-09-16 20:38:33.105 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42682 10 6452 1 2025-09-16 20:39:09.337 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:39:09.180 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:39:09.440 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:39:09.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:39:09.411 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:39:33.470 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49792 10 6452 1 2025-09-16 20:35:30.632 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:40:33.871 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6452 1 2025-09-16 20:41:34.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56390 10 6452 1 2025-09-16 20:42:34.692 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59100 10 6452 1 2025-09-16 20:38:30.631 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:43:35.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-09-16 20:44:09.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:44:09.781 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:44:09.776 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:44:09.755 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:44:09.780 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:44:35.519 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 2025-09-16 20:45:35.924 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:40124 13 6608 1 2025-09-16 20:46:36.365 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57310 10 6452 1 2025-09-16 20:42:30.634 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:47:36.724 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45300 10 6452 1 2025-09-16 20:48:37.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55354 10 6452 1 2025-09-16 20:49:09.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:49:09.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:49:09.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:49:09.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:49:09.508 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:49:37.526 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 10 6452 1 2025-09-16 20:45:30.636 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:50:37.930 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-09-16 20:51:38.319 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45780 10 6452 1 2025-09-16 20:52:38.722 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54248 10 6452 1 2025-09-16 20:53:39.135 00:00:10.679 TCP 1.101.0.1:3000 -> 23.104.0.1:40458 10 6452 1 2025-09-16 20:54:09.489 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:54:09.625 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:54:09.438 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:54:09.557 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:54:09.640 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:49:30.636 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 20:54:39.851 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38526 10 6452 1 2025-09-16 20:55:40.281 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53536 12 6556 1 2025-09-16 20:56:40.693 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54310 10 6452 1 2025-09-16 20:52:30.637 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 20:57:41.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48912 10 6452 1 Summary: total flows: 136, total bytes: 410685, total packets: 1013, avg bps: 883, avg pps: 0, avg bpp: 405 Time window: 2025-09-16 19:56:30 - 2025-09-16 20:58:30 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0028s Wall: 0.0019s flows/second: 70431.6 Runtime: 0.0020s