Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 14:59:26.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:59:26.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:59:26.540 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:59:17.053 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42184 10 6452 1 2025-10-18 14:59:26.543 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:59:26.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:54:46.251 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:00:17.452 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60082 10 6452 1 2025-10-18 15:01:17.814 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39230 10 6452 1 2025-10-18 15:02:18.220 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6452 1 2025-10-18 15:03:18.620 00:00:10.747 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-10-18 14:58:46.255 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:04:19.406 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-10-18 15:04:27.078 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:04:27.082 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:04:26.630 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:04:27.086 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:04:27.169 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:05:19.811 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 10 6452 1 2025-10-18 15:06:20.221 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44676 10 6452 1 2025-10-18 15:01:46.253 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:07:20.585 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-18 15:08:20.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50242 10 6452 1 2025-10-18 15:09:26.786 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:09:27.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:09:26.421 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:09:26.988 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:09:27.072 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:09:21.390 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-10-18 15:10:22.197 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56196 10 6452 1 2025-10-18 15:05:46.257 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:11:22.599 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-10-18 15:12:23.004 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6452 1 2025-10-18 15:13:23.438 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:42300 12 10375 1 2025-10-18 15:08:46.255 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:14:26.665 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:14:26.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:14:26.570 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:14:26.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:14:26.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:14:23.914 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-10-18 15:15:24.319 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:50036 10 6452 1 2025-10-18 15:16:25.200 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45716 10 6452 1 2025-10-18 15:17:25.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40962 10 6452 1 2025-10-18 15:12:46.262 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:18:26.005 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34888 10 6452 1 2025-10-18 15:19:26.902 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:19:27.004 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:19:26.824 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:19:26.739 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:19:26.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:19:26.410 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36260 10 6452 1 2025-10-18 15:20:26.777 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40206 10 6452 1 2025-10-18 15:15:46.262 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:21:27.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42650 10 6452 1 2025-10-18 15:22:27.589 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-10-18 15:23:27.990 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47792 10 6452 1 2025-10-18 15:24:27.128 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:24:27.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:24:27.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:24:27.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:24:27.570 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:24:28.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-10-18 15:19:46.265 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:25:28.802 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44832 10 6452 1 2025-10-18 15:26:29.202 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44392 10 6452 1 2025-10-18 15:27:29.613 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40076 10 6452 1 2025-10-18 15:22:46.264 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:28:30.032 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6452 1 2025-10-18 15:29:27.090 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:29:27.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:29:27.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:29:27.090 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:29:27.174 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:29:30.442 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6452 1 2025-10-18 15:30:30.863 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44266 10 6452 1 2025-10-18 15:31:31.276 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38584 10 6452 1 2025-10-18 15:26:46.267 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:32:31.680 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35176 10 6452 1 2025-10-18 15:33:32.099 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49390 10 6452 1 2025-10-18 15:34:27.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:34:27.188 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:34:27.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:34:27.260 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:34:27.344 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:34:32.504 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35904 10 6452 1 2025-10-18 15:29:46.266 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:35:32.859 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55068 10 6452 1 2025-10-18 15:36:33.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55602 10 6452 1 2025-10-18 15:37:33.677 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-10-18 15:38:34.123 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 10 6452 1 2025-10-18 15:33:46.269 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:39:27.349 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:39:27.156 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:39:27.429 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:39:27.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:39:27.431 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:39:34.492 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-10-18 15:40:34.901 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:45658 10 6452 1 2025-10-18 15:41:35.276 00:00:12.166 TCP 1.101.0.1:3000 -> 23.104.0.1:56720 10 6452 1 2025-10-18 15:36:46.266 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:42:37.484 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39094 10 6452 1 2025-10-18 15:43:37.885 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50916 10 6452 1 2025-10-18 15:44:27.451 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:44:27.389 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:44:27.394 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:44:27.328 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:44:27.533 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:44:38.260 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46476 10 6452 1 2025-10-18 15:45:38.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-18 15:40:46.271 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:46:39.090 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53772 10 6452 1 2025-10-18 15:47:39.458 00:00:10.567 TCP 1.101.0.1:3000 -> 23.104.0.1:54338 10 6452 1 2025-10-18 15:43:46.268 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:48:40.070 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-10-18 15:49:27.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:49:27.250 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:49:27.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:49:27.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:49:27.680 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:49:40.476 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6452 1 2025-10-18 15:50:40.834 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:47054 10 6452 1 2025-10-18 15:51:41.226 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-10-18 15:47:46.271 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:52:41.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 10 6452 1 2025-10-18 15:53:42.036 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59834 10 6452 1 2025-10-18 15:54:27.761 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:54:27.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:54:27.308 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:54:27.593 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:54:27.675 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:54:42.444 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-10-18 15:50:46.268 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:55:42.824 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-10-18 15:56:43.228 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:47708 10 6452 1 2025-10-18 15:57:43.668 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36178 10 6452 1 Summary: total flows: 136, total bytes: 414348, total packets: 1010, avg bps: 875, avg pps: 0, avg bpp: 410 Time window: 2025-10-18 14:54:46 - 2025-10-18 15:57:54 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0038s User: 0.0015s Wall: 0.0027s flows/second: 50709.0 Runtime: 0.0027s