Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 23:59:19.545 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 23:59:08.707 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-10-07 23:59:19.875 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 23:59:19.870 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 23:59:19.766 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 23:59:19.629 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:00:09.113 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6452 1 2025-10-08 00:01:09.487 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-10-08 00:02:09.894 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52932 12 6556 1 2025-10-07 23:58:40.891 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:03:10.312 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-10-07 23:59:40.893 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:04:19.747 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:04:19.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:04:19.739 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:04:19.747 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:04:19.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:04:10.711 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35506 10 6452 1 2025-10-08 00:05:11.079 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-10-08 00:06:11.446 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6452 1 2025-10-08 00:07:11.848 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50366 10 6452 1 2025-10-08 00:08:12.274 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6452 1 2025-10-08 00:04:40.894 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:09:19.638 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:09:19.838 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:09:19.690 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:09:19.557 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:09:19.877 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:09:12.687 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6452 1 2025-10-08 00:05:40.896 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:10:13.069 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41654 10 6452 1 2025-10-08 00:11:13.466 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-10-08 00:12:13.871 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-10-08 00:13:14.277 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35188 10 6452 1 2025-10-08 00:14:19.964 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:14:19.769 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:14:20.092 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:14:19.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:14:20.010 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:14:14.642 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 11 6504 1 2025-10-08 00:10:40.894 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:15:15.115 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44322 10 6452 1 2025-10-08 00:11:40.899 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:16:15.485 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46882 10 6452 1 2025-10-08 00:17:15.900 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59684 10 6452 1 2025-10-08 00:18:16.316 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39720 10 6452 1 2025-10-08 00:19:20.290 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:19:20.358 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:19:20.283 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:19:20.252 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:19:20.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:19:16.726 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-10-08 00:20:17.138 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40040 10 6452 1 2025-10-08 00:16:40.898 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:21:17.546 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-10-08 00:17:40.902 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:22:17.970 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51200 10 6452 1 2025-10-08 00:23:18.394 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41034 10 6452 1 2025-10-08 00:24:19.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:24:20.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:24:19.986 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:24:20.123 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:24:20.207 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:24:18.752 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34920 10 6452 1 2025-10-08 00:25:19.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53064 10 6452 1 2025-10-08 00:26:19.523 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-10-08 00:22:40.901 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:27:19.932 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-10-08 00:23:40.905 00:05:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:28:20.346 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33302 10 6452 1 2025-10-08 00:29:20.401 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:29:20.252 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:29:20.413 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:29:20.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:29:20.316 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:29:20.754 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49036 10 6452 1 2025-10-08 00:30:21.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6452 1 2025-10-08 00:31:21.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-10-08 00:32:21.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6452 1 2025-10-08 00:28:40.903 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:33:22.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32870 10 6452 1 2025-10-08 00:29:40.905 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:34:20.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:34:20.453 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:34:20.083 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:34:20.379 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:34:20.206 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:34:22.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58804 10 6452 1 2025-10-08 00:35:23.209 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38754 10 6452 1 2025-10-08 00:36:23.615 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41132 10 6452 1 2025-10-08 00:37:24.017 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39070 10 6452 1 2025-10-08 00:38:24.416 00:00:10.598 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-10-08 00:34:40.905 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:39:20.499 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:39:20.422 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:39:20.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:39:20.263 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:39:20.417 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:39:25.062 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42352 10 6452 1 2025-10-08 00:35:40.908 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:40:25.468 00:00:11.047 TCP 1.101.0.1:3000 -> 23.104.0.1:58244 10 6452 1 2025-10-08 00:41:26.552 00:00:10.654 TCP 1.101.0.1:3000 -> 23.104.0.1:56954 10 6452 1 2025-10-08 00:42:27.246 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34874 10 6452 1 2025-10-08 00:43:27.659 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-10-08 00:44:20.443 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:44:20.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:44:20.358 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:44:20.541 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:44:20.361 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:44:28.066 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48510 10 6452 1 2025-10-08 00:40:40.905 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:45:28.471 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40164 10 6452 1 2025-10-08 00:41:40.908 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:46:28.875 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43934 10 6452 1 2025-10-08 00:47:29.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55798 10 6452 1 2025-10-08 00:48:29.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6452 1 2025-10-08 00:49:20.758 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:49:20.504 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:49:20.531 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:49:20.675 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:49:20.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:49:30.100 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42580 10 6452 1 2025-10-08 00:46:40.906 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:50:30.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51224 10 6452 1 2025-10-08 00:47:40.909 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:51:30.929 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6452 1 2025-10-08 00:52:31.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-10-08 00:53:31.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54368 10 6452 1 2025-10-08 00:54:20.968 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:54:20.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:54:20.807 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:54:20.596 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:54:20.885 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:54:32.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-10-08 00:55:32.583 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57388 10 6452 1 2025-10-08 00:56:32.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57298 10 6452 1 2025-10-08 00:52:40.908 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:53:40.911 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:57:33.355 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-08 00:58:33.712 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43510 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 926, avg pps: 0, avg bpp: 407 Time window: 2025-10-07 23:58:40 - 2025-10-08 00:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0011s Wall: 0.0027s flows/second: 51585.9 Runtime: 0.0027s