Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-28 11:59:45.433 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:59:45.434 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:59:45.441 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:59:45.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:59:36.753 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60152 10 6452 1 2025-09-28 11:59:45.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:00:37.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34306 10 6452 1 2025-09-28 12:01:37.556 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-09-28 12:02:37.921 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46356 10 6452 1 2025-09-28 11:58:36.187 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:03:38.328 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60488 10 6452 1 2025-09-28 11:59:36.190 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:04:45.578 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:04:45.488 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:04:45.494 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:04:45.631 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:04:45.496 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:04:38.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50094 10 6452 1 2025-09-28 12:05:39.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41382 10 6452 1 2025-09-28 12:06:39.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51102 10 6452 1 2025-09-28 12:07:39.920 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48352 10 6452 1 2025-09-28 12:08:40.330 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-09-28 12:09:45.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:09:45.411 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:09:45.420 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:09:45.487 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:09:45.570 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:09:40.738 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53430 10 6452 1 2025-09-28 12:05:36.186 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:10:41.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-09-28 12:06:36.188 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:11:41.550 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46516 10 6452 1 2025-09-28 12:12:41.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59694 10 6452 1 2025-09-28 12:13:42.314 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39532 10 6452 1 2025-09-28 12:14:45.768 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:14:45.769 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:14:45.614 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:14:45.413 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:14:45.685 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:14:42.678 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53794 10 6452 1 2025-09-28 12:15:43.109 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:34470 10 6452 1 2025-09-28 12:16:43.499 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40390 10 6452 1 2025-09-28 12:12:36.188 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:17:43.902 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38214 12 6556 1 2025-09-28 12:13:36.191 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:18:44.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 10 6452 1 2025-09-28 12:19:45.984 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:19:46.109 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:19:45.771 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:19:45.834 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:19:45.917 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:19:44.725 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46334 10 6452 1 2025-09-28 12:20:45.158 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-09-28 12:21:45.527 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48656 10 6452 1 2025-09-28 12:22:45.925 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47190 10 6452 1 2025-09-28 12:23:46.330 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58698 10 6452 1 2025-09-28 12:19:36.193 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:24:45.943 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:24:45.762 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:24:45.941 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:24:45.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:24:45.860 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:24:46.732 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36714 10 6452 1 2025-09-28 12:20:36.195 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:25:47.105 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:35008 10 6452 1 2025-09-28 12:26:47.662 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57068 10 6452 1 2025-09-28 12:27:48.070 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48828 10 6452 1 2025-09-28 12:28:48.484 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53728 12 6556 1 2025-09-28 12:29:45.864 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:29:45.783 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:29:45.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:29:45.872 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:29:45.955 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:29:48.888 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:37128 10 6452 1 2025-09-28 12:30:49.261 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:47542 10 6452 1 2025-09-28 12:26:36.192 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:31:49.839 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:50458 10 6452 1 2025-09-28 12:27:36.195 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:32:50.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42746 10 6452 1 2025-09-28 12:33:50.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6452 1 2025-09-28 12:34:46.068 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:34:45.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:34:45.882 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:34:45.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:34:45.985 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:34:51.038 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34604 10 6452 1 2025-09-28 12:35:51.444 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 10 6452 1 2025-09-28 12:36:51.846 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:50436 10 6452 1 2025-09-28 12:37:52.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47348 10 6452 1 2025-09-28 12:33:36.197 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:38:52.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-09-28 12:34:36.200 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:39:46.401 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:39:46.317 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:39:46.495 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:39:46.338 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:39:46.577 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:39:53.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36318 10 6452 1 2025-09-28 12:40:53.503 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58046 10 6452 1 2025-09-28 12:41:53.914 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-09-28 12:42:54.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-09-28 12:43:54.690 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42122 10 6452 1 2025-09-28 12:44:46.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:44:46.356 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:44:46.431 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:44:46.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:44:46.228 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:44:55.120 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38000 10 6452 1 2025-09-28 12:40:36.198 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:45:55.527 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:58710 10 6452 1 2025-09-28 12:41:36.201 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:46:55.998 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:40124 12 10367 1 2025-09-28 12:47:56.492 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-09-28 12:48:56.896 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50262 10 6452 1 2025-09-28 12:49:46.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:49:46.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:49:46.482 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:49:46.348 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:49:46.323 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:49:57.297 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60722 10 6452 1 2025-09-28 12:50:57.706 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54010 10 6452 1 2025-09-28 12:51:58.115 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51356 10 6452 1 2025-09-28 12:47:36.200 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 12:52:58.476 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56910 10 6452 1 2025-09-28 12:48:36.202 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 12:53:58.844 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:48888 10 6452 1 2025-09-28 12:54:46.380 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 12:54:46.555 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 12:54:46.597 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 12:54:46.459 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:54:46.297 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 12:54:59.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33782 10 6452 1 2025-09-28 12:55:59.626 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46776 10 6452 1 2025-09-28 12:57:00.030 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:32964 12 10367 1 2025-09-28 12:58:00.465 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36752 10 6452 1 Summary: total flows: 135, total bytes: 417602, total packets: 1002, avg bps: 934, avg pps: 0, avg bpp: 416 Time window: 2025-09-28 11:58:36 - 2025-09-28 12:58:10 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0039s User: 0.0020s Wall: 0.0020s flows/second: 66867.2 Runtime: 0.0021s