Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 15:58:59.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 15:58:59.072 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 15:58:58.885 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 15:58:58.910 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 15:58:58.948 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 15:59:03.725 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-10-17 16:00:04.131 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50364 10 6452 1 2025-10-17 15:56:45.730 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:01:04.531 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-10-17 16:02:04.935 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60086 10 6452 1 2025-10-17 16:03:05.365 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6452 1 2025-10-17 16:03:59.003 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:03:59.160 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:03:58.883 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:03:59.160 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:03:59.242 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:04:05.729 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-10-17 16:00:45.729 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:05:06.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45454 10 6452 1 2025-10-17 16:06:06.544 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56556 11 6504 1 2025-10-17 16:02:45.733 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:07:06.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46154 10 6452 1 2025-10-17 16:08:07.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48034 10 6452 1 2025-10-17 16:08:58.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:08:58.929 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:08:58.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:08:59.166 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:08:59.250 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:09:07.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56116 10 6452 1 2025-10-17 16:10:08.174 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58896 10 6452 1 2025-10-17 16:06:45.734 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:11:08.578 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53006 10 6452 1 2025-10-17 16:12:08.984 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37684 10 6452 1 2025-10-17 16:08:45.737 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:13:09.384 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51464 10 6452 1 2025-10-17 16:13:59.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:13:59.461 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:13:59.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:13:59.037 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:13:59.417 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:14:09.746 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33360 10 6452 1 2025-10-17 16:15:10.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59566 10 6452 1 2025-10-17 16:16:10.555 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-10-17 16:12:45.738 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:17:10.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6452 1 2025-10-17 16:18:11.358 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 10 6452 1 2025-10-17 16:14:45.745 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:18:59.524 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:18:59.316 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:18:59.294 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:18:59.301 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:18:59.383 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:19:11.766 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34926 10 6452 1 2025-10-17 16:20:12.179 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55100 10 6452 1 2025-10-17 16:21:12.577 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 10 6452 1 2025-10-17 16:22:12.976 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59996 10 6452 1 2025-10-17 16:18:45.746 00:05:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:23:13.382 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:39640 10 6452 1 2025-10-17 16:23:59.402 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:23:59.460 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:23:59.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:23:59.253 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:23:59.485 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:24:13.880 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-10-17 16:20:45.747 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:25:14.241 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34898 10 6452 1 2025-10-17 16:26:14.653 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37126 10 6452 1 2025-10-17 16:27:15.057 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 12 10375 1 2025-10-17 16:28:15.493 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32938 10 6452 1 2025-10-17 16:24:45.747 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:28:59.730 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:28:59.597 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:28:59.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:28:59.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:28:59.600 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:29:15.903 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50096 10 6452 1 2025-10-17 16:30:16.274 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54466 10 6452 1 2025-10-17 16:26:45.750 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:31:16.629 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59790 10 6452 1 2025-10-17 16:32:17.040 00:00:11.008 TCP 1.101.0.1:3000 -> 23.104.0.1:44788 10 6452 1 2025-10-17 16:33:18.109 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36572 10 6452 1 2025-10-17 16:33:59.666 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:33:59.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:33:59.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:33:59.609 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:33:59.699 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:34:18.524 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54624 10 6452 1 2025-10-17 16:30:45.749 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:35:18.886 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50194 10 6452 1 2025-10-17 16:36:19.323 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:35198 10 6452 1 2025-10-17 16:32:45.752 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:37:19.702 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50162 10 6452 1 2025-10-17 16:38:20.070 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47252 10 6452 1 2025-10-17 16:38:59.697 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:38:59.740 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:38:59.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:38:59.693 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:38:59.778 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:39:20.477 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 12 6556 1 2025-10-17 16:40:20.882 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59246 10 6452 1 2025-10-17 16:36:45.752 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:41:21.294 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-10-17 16:42:21.696 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 2025-10-17 16:38:45.755 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:43:22.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48560 10 6452 1 2025-10-17 16:43:59.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:43:59.876 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:43:59.882 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:43:59.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:43:59.887 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:44:22.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47754 10 6452 1 2025-10-17 16:45:22.914 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-10-17 16:46:23.308 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-10-17 16:42:45.753 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:47:23.718 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45128 10 6452 1 2025-10-17 16:48:24.120 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49650 10 6452 1 2025-10-17 16:44:45.756 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:48:59.906 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:48:59.685 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:48:59.612 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:48:59.690 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:48:59.773 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:49:24.483 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57708 10 6452 1 2025-10-17 16:50:24.885 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 12 6556 1 2025-10-17 16:51:25.301 00:00:10.650 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 10 6452 1 2025-10-17 16:52:25.984 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:58294 12 10375 1 2025-10-17 16:48:45.761 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 16:53:26.469 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58234 10 6452 1 2025-10-17 16:53:59.828 00:00:00.019 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:53:59.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:54:00.047 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:54:00.079 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:53:59.983 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:54:26.892 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54816 10 6452 1 2025-10-17 16:50:45.763 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 16:55:27.275 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44136 10 6452 1 2025-10-17 16:56:27.691 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6452 1 2025-10-17 16:57:28.067 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54040 10 6452 1 2025-10-17 16:58:28.478 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33964 10 6452 1 2025-10-17 16:54:45.761 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 425106, total packets: 1029, avg bps: 899, avg pps: 0, avg bpp: 413 Time window: 2025-10-17 15:56:45 - 2025-10-17 16:59:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0009s Wall: 0.0019s flows/second: 75553.6 Runtime: 0.0019s